All of lore.kernel.org
 help / color / mirror / Atom feed
* /dev/pts/x use denials
@ 2005-04-03 23:00 Ivan Gyurdiev
  2005-04-03 23:13 ` Ivan Gyurdiev
  2005-04-04 15:13 ` Stephen Smalley
  0 siblings, 2 replies; 7+ messages in thread
From: Ivan Gyurdiev @ 2005-04-03 23:00 UTC (permalink / raw)
  To: selinux

Strange denials:

/dev/pts/2 has context: sysadm_tmp_t.
Those happen intermittently, but I can't figure out when exactly.
I am logged in as a regular user, but su-ed to root. Usually accompanied
by a dac_override.

audit(1112568847.907:0): avc:  denied  { use } for  pid=22851
exe=/usr/bin/mplayer path=/dev/pts/2 dev=devpts ino=4
scontext=root:sysadm_r:sysadm_mplayer_t tcontext=phantom:staff_r:staff_t
tclass=fd
audit(1112568874.222:0): avc:  denied  { use } for  pid=22870
exe=/usr/bin/tvtime path=/dev/pts/2 dev=devpts ino=4
scontext=root:sysadm_r:sysadm_tvtime_t tcontext=phantom:staff_r:staff_t
tclass=fd
audit(1112568881.428:0): avc:  denied  { use } for  pid=22872
exe=/bin/bash path=/dev/pts/2 dev=devpts ino=4
scontext=root:sysadm_r:sysadm_mozilla_t tcontext=phantom:staff_r:staff_t
tclass=fd

-- 
Ivan Gyurdiev <ivg2@cornell.edu>
Cornell University


--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.

^ permalink raw reply	[flat|nested] 7+ messages in thread

end of thread, other threads:[~2005-04-04 15:43 UTC | newest]

Thread overview: 7+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2005-04-03 23:00 /dev/pts/x use denials Ivan Gyurdiev
2005-04-03 23:13 ` Ivan Gyurdiev
2005-04-04 15:09   ` Daniel J Walsh
2005-04-04 15:13 ` Stephen Smalley
2005-04-04 15:43   ` Ivan Gyurdiev
2005-04-04 15:39     ` Stephen Smalley
2005-04-04 15:40     ` Daniel J Walsh

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.