Fedora 9 can't use apache's mod_auth_shadow

Kevin White fedora-kevin at kevbo.org
Thu Feb 5 03:45:46 UTC 2009


OK, after my work before, mod_auth_shadow is working, but I'm getting a 
bunch of this in /var/log/messages:

Feb  4 22:47:32 localhost setroubleshoot: SELinux is preventing validate 
(system_chkpwd_t) "read write" to anon_inode (anon_inodefs_t). For 
complete SELinux messages. run sealert -l 
6f1012d0-d21a-4da2-bc85-e2dc1929aa84

Raw Audit Messages

node=localhost.localdomain type=AVC msg=audit(1233805644.757:1148): avc: 
  denied  { read write } for  pid=15883 comm="validate" 
path="anon_inode:[eventpoll]" dev=anon_inodefs ino=33 
scontext=unconfined_u:system_r:system_chkpwd_t:s0 
tcontext=system_u:object_r:anon_inodefs_t:s0 tclass=file

node=localhost.localdomain type=SYSCALL msg=audit(1233805644.757:1148): 
arch=40000003 syscall=11 success=yes exit=0 a0=bf8b25bf a1=bf8b154c 
a2=bf8b2dec a3=1 items=0 ppid=15847 pid=15883 auid=513 uid=48 gid=502 
euid=0 suid=0 fsuid=0 egid=502 sgid=502 fsgid=502 tty=(none) ses=11 
comm="validate" exe="/usr/sbin/validate" 
subj=unconfined_u:system_r:system_chkpwd_t:s0 key=(null)

Ummmm....something isn't being allowed, but the check password is still 
working.

I'm sorry...I don't even know what anon_inode is.

Help?

I'm just trying to use software that's included with Fedora 9...

Kevin




More information about the fedora-selinux-list mailing list