[libvirt] These two machines look like they have dontaudit rules disabled.

Daniel J Walsh dwalsh at redhat.com
Tue Mar 13 10:32:30 UTC 2012


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

audit_log-ex-std-node22.prod.rhcloud.com-2012-03-12
audit_log-ex-std-node24.prod.rhcloud.com-2012-03-12


semodule -B

Will turn dontaudit rules back on.

22:31:32.791:507663) : avc:  denied  { siginh } for  pid=15258
comm=trap-user scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023
tcontext=unconfined_u:system_r:libra_t:s0:c5,c641 tclass=process

grep siginh * | audit2allow


#============= sshd_t ==============
#!!!! This avc has a dontaudit rule in the current policy

allow sshd_t libra_t:process siginh;
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.12 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/

iEYEARECAAYFAk9fIj4ACgkQrlYvE4MpobM44gCeJEqC+EV3HN57pL2j/hv9hMYO
cewAnjYiI6hehUpwqVEQJ3bX4Dz3eS95
=GqCQ
-----END PGP SIGNATURE-----




More information about the libvir-list mailing list