More consolekit_t and dbus_t AVCs (from today's Rawhide)

Tom London selinux at gmail.com
Sun Feb 10 20:47:40 UTC 2008


On Sun, Feb 10, 2008 at 12:34 PM, Tom London <selinux at gmail.com> wrote:
> After doing today's rawhide thing, get this on targeted/enforcing boot/login:
>
>  #============= system_dbusd_t ==============
>  allow system_dbusd_t NetworkManager_t:dbus send_msg;
>  allow system_dbusd_t unconfined_t:dbus send_msg;
>
>  #============= xdm_t ==============
>  allow xdm_t consolekit_var_run_t:dir search;
>
>  [copy of /var/log/audit/audit.log attached.]
>
Sorry, got a few more in permissive mode:

#============= system_dbusd_t ==============
allow system_dbusd_t NetworkManager_t:dbus send_msg;
allow system_dbusd_t unconfined_t:dbus send_msg;

#============= xdm_t ==============
allow xdm_t consolekit_var_run_t:dir search;
allow xdm_t consolekit_var_run_t:file { read getattr };

[complete audit.log attached.]

tom
-- 
Tom London
-------------- next part --------------
An embedded and charset-unspecified text was scrubbed...
Name: log2.txt
URL: <http://listman.redhat.com/archives/fedora-selinux-list/attachments/20080210/8b391df9/attachment.txt>


More information about the fedora-selinux-list mailing list