canna .... still wants to access /tmp

Tom London selinux at comcast.net
Wed Jun 9 18:04:40 UTC 2004


Looks like the new policy (selinux-strict-policy-1.13.4-2) removes 
access to tmp files in canna.te.  But canna (Canna-0.3.7p3-2) still 
wants to access /tmp/. 

Are there new versions of the canna stuff coming that move the files 
from /tmp elsewhere?

tom

Jun  8 09:32:06 dell kernel: audit(1086712326.043:0): avc:  denied  { 
search } for  pid=2094 exe=/usr/sbin/cannaserver name=tmp dev=hdb3 
ino=278529 scontext=system_u:system_r:canna_t 
tcontext=system_u:object_r:tmp_t tclass=dir
Jun  8 09:32:06 dell kernel: audit(1086712326.044:0): avc:  denied  { 
search } for  pid=2094 exe=/usr/sbin/cannaserver name=tmp dev=hdb3 
ino=278529 scontext=system_u:system_r:canna_t 
tcontext=system_u:object_r:tmp_t tclass=dir
Jun  8 09:32:06 dell cannaserver:
Jun  8 09:32:06 dell cannaserver: ERROR:
Jun  8 09:32:06 dell cannaserver:    Another 'cannaserver' is detected.
Jun  8 09:32:06 dell cannaserver:    If 'cannaserver' is not running,
Jun  8 09:32:06 dell cannaserver:    "/tmp/.iroha_unix/IROHA" may remain 
accidentally.
Jun  8 09:32:06 dell cannaserver:    So, after making sure that 
'cannaserver' is not running.
Jun  8 09:32:06 dell cannaserver:    Please execute following command.
Jun  8 09:32:06 dell cannaserver:
Jun  8 09:32:06 dell cannaserver:                rm 
/tmp/.iroha_unix/IROHA Jun 8 09:32:06 dell cannaserver:





More information about the fedora-selinux-list mailing list