[Spacewalk-list] SELinux and /tftpboot

Marcus Moeller mail at marcus-moeller.de
Tue Sep 29 08:16:24 UTC 2009


Hi all,

it seems that the images located /tftpboot/images/XXX/ are associated
with the wrong SELinux context: 'root:object_r:spacewalk_data_t; which
leads to denies like this:

type=AVC msg=audit(1254211758.053:756): avc:  denied  { getattr } for
pid=31005 comm="in.tftpd"
path="/images/centos-5-x86_64:1:Spacewalk-Public-Cert/vmlinuz"
dev=dm-0 ino=5242885 scontext=system_u:system_r:tftpd_t:s0-s0:c0.c1023
tcontext=root:object_r:spacewalk_data_t:s0 tclass=file

Got spacewalk-0.6.4-1.el5 installed.

Best Regards
Marcus




More information about the Spacewalk-list mailing list