F8 updates kill setroubleshootd?

Paul Howarth paul at city-fan.org
Fri Feb 29 08:59:26 UTC 2008


Having installed the latest bunch of Fedora 8 updates this morning, 
which included selinux-policy and setroubleshoot, I'm getting these denials:

type=AVC msg=audit(1204275163.032:209): avc:  denied  { connectto } for 
  pid=26345 comm="setroubleshootd" path="/var/run/audispd_events" 
scontext=unconfined_u:system_r:setroubleshootd_t:s0 
tcontext=system_u:system_r:auditd_t:s0 tclass=unix_stream_socket

type=AVC msg=audit(1204275171.133:210): avc:  denied  { read } for 
pid=26379 comm="setroubleshootd" name=".rpmmacros" dev=0:15 ino=6331637 
scontext=unconfined_u:system_r:setroubleshootd_t:s0 
tcontext=system_u:object_r:nfs_t:s0 tclass=file

The first one looks like a policy issue but I can't fathom why 
setroubleshootd would be trying access ~/.rpmmacros for the second one.

Paul.




More information about the fedora-selinux-list mailing list