ntpd drift.TEMP file

Chuck R. Anderson cra at WPI.EDU
Sun Mar 6 21:17:20 UTC 2005


On Sun, Mar 06, 2005 at 07:03:26PM +0100, Lars Gullik Bjønnes wrote:
> I have the drift file in /var/lib/ntp/drift, but I get selinux errors
> for drift.TEMP:
> 
> Mar  6 18:51:26 slabber ntpd[26387]: can't open
> /var/lib/ntp/drift.TEMP: Permission denied
> Mar  6 18:51:26 slabber kernel: audit(1110131486.894:0): avc:  denied
> { dac_override } for  pid=26387 exe=/usr/sbin/ntpd capability=1
> scontext=root:system_r:ntpd_t tcontext=root:system_r:ntpd_t
> tclass=capability
> 
> This is an updated FC3 system.

What are the DAC unix permissions bits and owner/group on the file? I
am no expert in SELinux, but that AVC sounds to me like the standard
unix permissions are disallowing access to the file.




More information about the fedora-selinux-list mailing list