pam & /etc/selinux/strict/contexts/files/media

Tom London selinux at gmail.com
Sat Jan 8 19:34:05 UTC 2005


Running strict/enforcing, latest Rawhide,
but reverted to  kernel-2.6.10-1.1063_FC4.

Noticed the following AVCs from pam early
in boot:

Jan  8 10:33:17 fedora kernel: audit(1105180348.115:0): avc:  denied 
{ read } for  pid=1562 exe=/sbin/pam_console_apply
path=/etc/selinux/strict/contexts/files/media dev=hda2 ino=4506184
scontext=system_u:system_r:pam_console_t
tcontext=system_u:object_r:file_context_t tclass=file
Jan  8 10:33:17 fedora kernel: audit(1105180348.145:0): avc:  denied 
{ read } for  pid=1566 exe=/sbin/pam_console_apply
path=/etc/selinux/strict/contexts/files/media dev=hda2 ino=4506184
scontext=system_u:system_r:pam_console_t
tcontext=system_u:object_r:file_context_t tclass=file

allow pam_console_t file_context_t:file read;

dontallow?

tom

-- 
Tom London




More information about the fedora-selinux-list mailing list