[redhat-lspp] SELinux/MLS question

Kris Wilson krisw at us.ibm.com
Thu Nov 17 20:14:33 UTC 2005


We're running kernel 2.6.14-1.1639.2.2_FC5smp and get "Permission denied"
executing a test script.

We're running with security context  root::sysadm_t:s0-s15:c0.c255 and the 
file
has root:object_r:etc_runtime_t:s0, which seems to have happened by
default; I didn't specifically label it.

What should the security context be for such as script?  audit2allow shows 
we
need  to add  "allow sysadm_t etc_runtime_t:file { execute 
execute_no_trans };"
which we tried to add to our policy.conf, but load_policy is segfaulting.

Any ideas?  Thanks!




More information about the redhat-lspp mailing list