All of lore.kernel.org
 help / color / mirror / Atom feed
* openssh (run_init messages)
@ 2002-08-26 16:45 Timothy Wood
  2002-08-26 17:51 ` Stephen Smalley
  0 siblings, 1 reply; 2+ messages in thread
From: Timothy Wood @ 2002-08-26 16:45 UTC (permalink / raw)
  To: Stephen Smalley; +Cc: SELinux

I did have time...


avc:  denied  { transition } for  pid=1125
exe=/usr/local/selinux/sbin/run_init path=/etc/rc.d/init.d/sshd
dev=03:06 ino=18409 scontext=timothy:sysadm_r:sysadm_t
tcontext=system_u:system_r:initrc_t tclass=process


Timothy,


--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.

^ permalink raw reply	[flat|nested] 2+ messages in thread

* Re: openssh (run_init messages)
  2002-08-26 16:45 openssh (run_init messages) Timothy Wood
@ 2002-08-26 17:51 ` Stephen Smalley
  0 siblings, 0 replies; 2+ messages in thread
From: Stephen Smalley @ 2002-08-26 17:51 UTC (permalink / raw)
  To: Timothy Wood; +Cc: SELinux


On 26 Aug 2002, Timothy Wood wrote:

> avc:  denied  { transition } for  pid=1125
> exe=/usr/local/selinux/sbin/run_init path=/etc/rc.d/init.d/sshd
> dev=03:06 ino=18409 scontext=timothy:sysadm_r:sysadm_t
> tcontext=system_u:system_r:initrc_t tclass=process

This implies that run_init isn't labeled properly.  To fix by hand, use
chcon system_u:object_r:run_init_exec_t /usr/local/selinux/sbin/run_init.
As I recall, I posted a patch for run_init.fc for the prior release long
ago that fixed this error.

--
Stephen D. Smalley, NAI Labs
ssmalley@nai.com




--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.

^ permalink raw reply	[flat|nested] 2+ messages in thread

end of thread, other threads:[~2002-08-26 17:51 UTC | newest]

Thread overview: 2+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2002-08-26 16:45 openssh (run_init messages) Timothy Wood
2002-08-26 17:51 ` Stephen Smalley

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.