Login
[x]
Log in using an account from:
Fedora Account System
Red Hat Associate
Red Hat Customer
Or login using a Red Hat Bugzilla account
Forgot Password
Login:
Hide Forgot
Create an Account
Red Hat Bugzilla – Attachment 844578 Details for
Bug 1016138
enable selinux for glusterfs server
[?]
New
Simple Search
Advanced Search
My Links
Browse
Requests
Reports
Current State
Search
Tabular reports
Graphical reports
Duplicates
Other Reports
User Changes
Plotly Reports
Bug Status
Bug Severity
Non-Defaults
|
Product Dashboard
Help
Page Help!
Bug Writing Guidelines
What's new
Browser Support Policy
5.0.4.rh83 Release notes
FAQ
Guides index
User guide
Web Services
Contact
Legal
This site requires JavaScript to be enabled to function correctly, please enable it.
VM 2 log (associated with comment #34)
audit-vm2.log (text/x-log), 166.74 KB, created by
Brian Foster
on 2014-01-02 14:38:49 UTC
(
hide
)
Description:
VM 2 log (associated with comment #34)
Filename:
MIME Type:
Creator:
Brian Foster
Created:
2014-01-02 14:38:49 UTC
Size:
166.74 KB
patch
obsolete
>type=DAEMON_START msg=audit(1388669413.154:2318): auditd start, ver=2.3.2 format=raw kernel=3.13.0-0.rc6.git0.1.fc21.x86_64 auid=4294967295 pid=569 subj=system_u:system_r:auditd_t:s0 res=success >type=SERVICE_START msg=audit(1388669413.214:7): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="systemd-tmpfiles-setup" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SYSTEM_BOOT msg=audit(1388669413.218:8): pid=589 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg='init exe="/usr/lib/systemd/systemd-update-utmp" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669413.223:9): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="systemd-update-utmp" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669413.237:10): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="alsa-state" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=NETFILTER_CFG msg=audit(1388669413.253:11): table=filter family=2 entries=0 >type=SYSCALL msg=audit(1388669413.253:11): arch=c000003e syscall=272 success=yes exit=0 a0=40000000 a1=ffffffffffffffff a2=0 a3=22 items=0 ppid=1 pid=594 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="(t-daemon)" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:init_t:s0 key=(null) >type=SERVICE_START msg=audit(1388669413.272:12): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="irqbalance" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669413.282:13): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="rngd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669413.287:14): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="smartd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669413.288:15): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="abrtd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669413.289:16): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="abrt-xorg" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669413.299:17): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="abrt-oops" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=AVC msg=audit(1388669413.319:18): avc: denied { execstack } for pid=598 comm="rpcbind" scontext=system_u:system_r:rpcbind_t:s0 tcontext=system_u:system_r:rpcbind_t:s0 tclass=process >type=AVC msg=audit(1388669413.319:18): avc: denied { execmem } for pid=598 comm="rpcbind" scontext=system_u:system_r:rpcbind_t:s0 tcontext=system_u:system_r:rpcbind_t:s0 tclass=process >type=SYSCALL msg=audit(1388669413.319:18): arch=c000003e syscall=10 success=yes exit=0 a0=7fffafa49000 a1=1000 a2=1000007 a3=0 items=0 ppid=1 pid=598 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="rpcbind" exe="/usr/sbin/rpcbind" subj=system_u:system_r:rpcbind_t:s0 key=(null) >type=SERVICE_START msg=audit(1388669413.382:19): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="dbus" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669413.389:20): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="systemd-user-sessions" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669413.392:21): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="rpcbind" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669413.396:22): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="mcelog" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_STOP msg=audit(1388669413.398:23): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="rngd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=failed' >type=SERVICE_START msg=audit(1388669413.399:24): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="abrt-ccpp" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669413.408:25): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="crond" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669413.427:26): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="atd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669413.442:27): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="rsyslog" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_STOP msg=audit(1388669413.451:28): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="mcelog" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=failed' >type=SERVICE_START msg=audit(1388669413.455:29): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="chronyd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669413.461:30): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="sssd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=failed' >type=SERVICE_START msg=audit(1388669413.527:31): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="rtkit-daemon" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669413.531:32): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="systemd-logind" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669413.544:33): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="ModemManager" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669413.606:34): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="polkit" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669413.635:35): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="accounts-daemon" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669413.684:36): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="NetworkManager" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=AVC msg=audit(1388669413.749:37): avc: denied { execstack } for pid=672 comm="glusterd" scontext=system_u:system_r:glusterd_t:s0 tcontext=system_u:system_r:glusterd_t:s0 tclass=process >type=AVC msg=audit(1388669413.749:37): avc: denied { execmem } for pid=672 comm="glusterd" scontext=system_u:system_r:glusterd_t:s0 tcontext=system_u:system_r:glusterd_t:s0 tclass=process >type=SYSCALL msg=audit(1388669413.749:37): arch=c000003e syscall=10 success=yes exit=0 a0=7ffff899d000 a1=1000 a2=1000007 a3=0 items=0 ppid=668 pid=672 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="glusterd" exe="/usr/sbin/glusterfsd" subj=system_u:system_r:glusterd_t:s0 key=(null) >type=SERVICE_START msg=audit(1388669413.759:38): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="sshd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=AVC msg=audit(1388669413.766:39): avc: denied { execstack } for pid=681 comm="rpc.statd" scontext=system_u:system_r:rpcd_t:s0 tcontext=system_u:system_r:rpcd_t:s0 tclass=process >type=AVC msg=audit(1388669413.766:39): avc: denied { execmem } for pid=681 comm="rpc.statd" scontext=system_u:system_r:rpcd_t:s0 tcontext=system_u:system_r:rpcd_t:s0 tclass=process >type=SYSCALL msg=audit(1388669413.766:39): arch=c000003e syscall=10 success=yes exit=0 a0=7fff2013e000 a1=1000 a2=1000007 a3=0 items=0 ppid=1 pid=681 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="rpc.statd" exe="/usr/sbin/rpc.statd" subj=system_u:system_r:rpcd_t:s0 key=(null) >type=AVC msg=audit(1388669413.773:40): avc: denied { execstack } for pid=677 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=AVC msg=audit(1388669413.773:40): avc: denied { execmem } for pid=677 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=SYSCALL msg=audit(1388669413.773:40): arch=c000003e syscall=10 success=yes exit=0 a0=7fffe2789000 a1=1000 a2=1000007 a3=0 items=0 ppid=1 pid=677 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 key=(null) >type=AVC msg=audit(1388669413.792:41): avc: denied { execstack } for pid=685 comm="sm-notify" scontext=system_u:system_r:rpcd_t:s0 tcontext=system_u:system_r:rpcd_t:s0 tclass=process >type=AVC msg=audit(1388669413.792:41): avc: denied { execmem } for pid=685 comm="sm-notify" scontext=system_u:system_r:rpcd_t:s0 tcontext=system_u:system_r:rpcd_t:s0 tclass=process >type=SYSCALL msg=audit(1388669413.792:41): arch=c000003e syscall=10 success=yes exit=0 a0=7fffebd4a000 a1=1000 a2=1000007 a3=0 items=0 ppid=684 pid=685 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="sm-notify" exe="/usr/sbin/sm-notify" subj=system_u:system_r:rpcd_t:s0 key=(null) >type=AVC msg=audit(1388669413.796:42): avc: denied { execstack } for pid=683 comm="dhclient" scontext=system_u:system_r:dhcpc_t:s0 tcontext=system_u:system_r:dhcpc_t:s0 tclass=process >type=AVC msg=audit(1388669413.796:42): avc: denied { execmem } for pid=683 comm="dhclient" scontext=system_u:system_r:dhcpc_t:s0 tcontext=system_u:system_r:dhcpc_t:s0 tclass=process >type=SYSCALL msg=audit(1388669413.796:42): arch=c000003e syscall=10 success=yes exit=0 a0=7fff4b333000 a1=1000 a2=1000007 a3=0 items=0 ppid=603 pid=683 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="dhclient" exe="/usr/sbin/dhclient" subj=system_u:system_r:dhcpc_t:s0 key=(null) >type=SERVICE_START msg=audit(1388669413.903:43): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="nfs-lock" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=AVC msg=audit(1388669413.955:44): avc: denied { execstack } for pid=680 comm="python" scontext=system_u:system_r:glusterd_t:s0 tcontext=system_u:system_r:glusterd_t:s0 tclass=process >type=AVC msg=audit(1388669413.955:44): avc: denied { execmem } for pid=680 comm="python" scontext=system_u:system_r:glusterd_t:s0 tcontext=system_u:system_r:glusterd_t:s0 tclass=process >type=SYSCALL msg=audit(1388669413.955:44): arch=c000003e syscall=10 success=yes exit=0 a0=7fff5342a000 a1=1000 a2=1000007 a3=0 items=0 ppid=672 pid=680 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="python" exe="/usr/bin/python2.7" subj=system_u:system_r:glusterd_t:s0 key=(null) >type=SERVICE_START msg=audit(1388669414.126:45): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="NetworkManager-dispatcher" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669414.135:46): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="plymouth-quit" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_STOP msg=audit(1388669414.135:47): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="plymouth-quit" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669414.141:48): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="plymouth-start" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_STOP msg=audit(1388669414.148:49): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="plymouth-start" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669414.154:50): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="plymouth-quit-wait" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_STOP msg=audit(1388669414.154:51): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="plymouth-quit-wait" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669414.170:52): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="lightdm" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=AVC msg=audit(1388669414.175:53): avc: denied { execstack } for pid=693 comm="python" scontext=system_u:system_r:glusterd_t:s0 tcontext=system_u:system_r:glusterd_t:s0 tclass=process >type=AVC msg=audit(1388669414.175:53): avc: denied { execmem } for pid=693 comm="python" scontext=system_u:system_r:glusterd_t:s0 tcontext=system_u:system_r:glusterd_t:s0 tclass=process >type=SYSCALL msg=audit(1388669414.175:53): arch=c000003e syscall=10 success=yes exit=0 a0=7fffdef11000 a1=1000 a2=1000007 a3=0 items=0 ppid=672 pid=693 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="python" exe="/usr/bin/python2.7" subj=system_u:system_r:glusterd_t:s0 key=(null) >type=CRED_ACQ msg=audit(1388669414.578:54): pid=736 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:xdm_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="lightdm" exe="/usr/sbin/lightdm" hostname=? addr=? terminal=:0 res=success' >type=USER_START msg=audit(1388669414.614:55): pid=736 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:xdm_t:s0-s0:c0.c1023 msg='op=PAM:session_open acct="lightdm" exe="/usr/sbin/lightdm" hostname=? addr=? terminal=:0 res=success' >type=USER_ACCT msg=audit(1388669414.618:56): pid=738 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg='op=PAM:accounting acct="lightdm" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=USER_START msg=audit(1388669414.620:57): pid=738 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg='op=PAM:session_open acct="lightdm" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669414.633:58): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="user@996" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669415.029:59): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="glusterd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669415.060:60): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="glusterfsd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SYSTEM_BOOT msg=audit(1388669415.074:61): pid=767 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg='init exe="/usr/lib/systemd/systemd-update-utmp" hostname=? addr=? terminal=? res=success' >type=SYSTEM_RUNLEVEL msg=audit(1388669415.078:62): pid=767 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg='old-level=N new-level=5 exe="/usr/lib/systemd/systemd-update-utmp" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669415.081:63): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="systemd-update-utmp-runlevel" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_STOP msg=audit(1388669415.081:64): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="systemd-update-utmp-runlevel" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669424.663:65): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="getty@tty2" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_STOP msg=audit(1388669425.029:66): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="NetworkManager-dispatcher" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669425.846:67): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="fprintd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=USER_AUTH msg=audit(1388669426.938:68): pid=780 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:local_login_t:s0-s0:c0.c1023 msg='op=PAM:authentication acct="root" exe="/usr/bin/login" hostname=? addr=? terminal=tty2 res=success' >type=USER_ACCT msg=audit(1388669426.946:69): pid=780 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:local_login_t:s0-s0:c0.c1023 msg='op=PAM:accounting acct="root" exe="/usr/bin/login" hostname=? addr=? terminal=tty2 res=success' >type=CRED_ACQ msg=audit(1388669426.946:70): pid=780 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:local_login_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/bin/login" hostname=? addr=? terminal=tty2 res=success' >type=LOGIN msg=audit(1388669426.946:71): pid=780 uid=0 old auid=4294967295 new auid=0 old ses=4294967295 new ses=1 res=1 >type=USER_ROLE_CHANGE msg=audit(1388669427.017:72): pid=780 uid=0 auid=0 ses=1 subj=system_u:system_r:local_login_t:s0-s0:c0.c1023 msg='pam: default-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 selected-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 exe="/usr/bin/login" hostname=? addr=? terminal=tty2 res=success' >type=USER_START msg=audit(1388669427.054:73): pid=780 uid=0 auid=0 ses=1 subj=system_u:system_r:local_login_t:s0-s0:c0.c1023 msg='op=PAM:session_open acct="root" exe="/usr/bin/login" hostname=? addr=? terminal=tty2 res=success' >type=CRED_REFR msg=audit(1388669427.057:74): pid=780 uid=0 auid=0 ses=1 subj=system_u:system_r:local_login_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/bin/login" hostname=? addr=? terminal=tty2 res=success' >type=USER_LOGIN msg=audit(1388669427.058:75): pid=780 uid=0 auid=0 ses=1 subj=system_u:system_r:local_login_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/bin/login" hostname=? addr=? terminal=tty2 res=success' >type=USER_ACCT msg=audit(1388669427.061:76): pid=787 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg='op=PAM:accounting acct="root" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=USER_START msg=audit(1388669427.065:77): pid=787 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg='op=PAM:session_open acct="root" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669427.079:78): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="user@0" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669445.086:79): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="systemd-readahead-done" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_STOP msg=audit(1388669445.086:80): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="systemd-readahead-done" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_STOP msg=audit(1388669456.028:81): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="fprintd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669510.301:82): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="getty@tty3" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388669511.560:83): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="fprintd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=USER_AUTH msg=audit(1388669512.499:84): pid=857 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:local_login_t:s0-s0:c0.c1023 msg='op=PAM:authentication acct="root" exe="/usr/bin/login" hostname=? addr=? terminal=tty3 res=success' >type=USER_ACCT msg=audit(1388669512.505:85): pid=857 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:local_login_t:s0-s0:c0.c1023 msg='op=PAM:accounting acct="root" exe="/usr/bin/login" hostname=? addr=? terminal=tty3 res=success' >type=CRED_ACQ msg=audit(1388669512.506:86): pid=857 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:local_login_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/bin/login" hostname=? addr=? terminal=tty3 res=success' >type=LOGIN msg=audit(1388669512.506:87): pid=857 uid=0 old auid=4294967295 new auid=0 old ses=4294967295 new ses=2 res=1 >type=USER_ROLE_CHANGE msg=audit(1388669512.561:88): pid=857 uid=0 auid=0 ses=2 subj=system_u:system_r:local_login_t:s0-s0:c0.c1023 msg='pam: default-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 selected-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 exe="/usr/bin/login" hostname=? addr=? terminal=tty3 res=success' >type=USER_START msg=audit(1388669512.584:89): pid=857 uid=0 auid=0 ses=2 subj=system_u:system_r:local_login_t:s0-s0:c0.c1023 msg='op=PAM:session_open acct="root" exe="/usr/bin/login" hostname=? addr=? terminal=tty3 res=success' >type=CRED_REFR msg=audit(1388669512.585:90): pid=857 uid=0 auid=0 ses=2 subj=system_u:system_r:local_login_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/bin/login" hostname=? addr=? terminal=tty3 res=success' >type=USER_LOGIN msg=audit(1388669512.586:91): pid=857 uid=0 auid=0 ses=2 subj=system_u:system_r:local_login_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/bin/login" hostname=? addr=? terminal=tty3 res=success' >type=AVC msg=audit(1388669522.552:92): avc: denied { execstack } for pid=887 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=AVC msg=audit(1388669522.552:92): avc: denied { execmem } for pid=887 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=SYSCALL msg=audit(1388669522.552:92): arch=c000003e syscall=10 success=yes exit=0 a0=7fffc8ff3000 a1=1000 a2=1000007 a3=0 items=0 ppid=677 pid=887 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 key=(null) >type=CRYPTO_KEY_USER msg=audit(1388669522.572:93): pid=888 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=888 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.1 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388669522.573:94): pid=888 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=888 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.1 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388669522.577:95): pid=887 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-client cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=888 suid=74 rport=47359 laddr=192. exe="/usr/sbin/sshd" hostname=? addr=192.168.122.1 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388669522.578:96): pid=887 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-server cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=888 suid=74 rport=47359 laddr=192. exe="/usr/sbin/sshd" hostname=? addr=192.168.122.1 terminal=? res=success' >type=USER_AUTH msg=audit(1388669525.000:97): pid=887 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:authentication acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.1 addr=192.168.122.1 terminal=ssh res=success' >type=USER_ACCT msg=audit(1388669525.002:98): pid=887 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:accounting acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.1 addr=192.168.122.1 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388669525.003:99): pid=887 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=888 suid=74 rport=47359 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.1 terminal=? res=success' >type=USER_AUTH msg=audit(1388669525.004:100): pid=887 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=success acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.1 terminal=ssh res=success' >type=CRED_ACQ msg=audit(1388669525.004:101): pid=887 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.1 addr=192.168.122.1 terminal=ssh res=success' >type=LOGIN msg=audit(1388669525.004:102): pid=887 uid=0 old auid=4294967295 new auid=0 old ses=4294967295 new ses=3 res=1 >type=USER_ROLE_CHANGE msg=audit(1388669525.050:103): pid=887 uid=0 auid=0 ses=3 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='pam: default-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 selected-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 exe="/usr/sbin/sshd" hostname=192.168.122.1 addr=192.168.122.1 terminal=ssh res=success' >type=USER_START msg=audit(1388669525.081:104): pid=887 uid=0 auid=0 ses=3 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:session_open acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.1 addr=192.168.122.1 terminal=ssh res=success' >type=USER_LOGIN msg=audit(1388669525.144:105): pid=891 uid=0 auid=0 ses=3 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.1 addr=192.168.122.1 terminal=/dev/pts/0 res=success' >type=USER_START msg=audit(1388669525.145:106): pid=891 uid=0 auid=0 ses=3 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.1 addr=192.168.122.1 terminal=/dev/pts/0 res=success' >type=CRYPTO_KEY_USER msg=audit(1388669525.147:107): pid=891 uid=0 auid=0 ses=3 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=891 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.1 terminal=pts/0 res=success' >type=CRYPTO_KEY_USER msg=audit(1388669525.147:108): pid=891 uid=0 auid=0 ses=3 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=891 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.1 terminal=pts/0 res=success' >type=CRED_REFR msg=audit(1388669525.149:109): pid=891 uid=0 auid=0 ses=3 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.1 addr=192.168.122.1 terminal=ssh res=success' >type=SERVICE_STOP msg=audit(1388669542.029:110): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="fprintd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_STOP msg=audit(1388669596.061:111): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="glusterd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=AVC msg=audit(1388669596.077:112): avc: denied { execstack } for pid=963 comm="glusterd" scontext=system_u:system_r:glusterd_t:s0 tcontext=system_u:system_r:glusterd_t:s0 tclass=process >type=AVC msg=audit(1388669596.077:112): avc: denied { execmem } for pid=963 comm="glusterd" scontext=system_u:system_r:glusterd_t:s0 tcontext=system_u:system_r:glusterd_t:s0 tclass=process >type=SYSCALL msg=audit(1388669596.077:112): arch=c000003e syscall=10 success=yes exit=0 a0=7fff10605000 a1=1000 a2=1000007 a3=0 items=0 ppid=962 pid=963 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="glusterd" exe="/usr/sbin/glusterfsd" subj=system_u:system_r:glusterd_t:s0 key=(null) >type=SERVICE_START msg=audit(1388669597.161:113): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="glusterd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_START msg=audit(1388670049.775:114): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="dnf-makecache" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_STOP msg=audit(1388670049.775:115): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="dnf-makecache" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=AVC msg=audit(1388670226.137:116): avc: denied { execmem } for pid=963 comm="glusterd" scontext=system_u:system_r:glusterd_t:s0 tcontext=system_u:system_r:glusterd_t:s0 tclass=process >type=SYSCALL msg=audit(1388670226.137:116): arch=c000003e syscall=9 success=yes exit=140327118209024 a0=0 a1=801000 a2=7 a3=20022 items=0 ppid=1 pid=963 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="glusterd" exe="/usr/sbin/glusterfsd" subj=system_u:system_r:glusterd_t:s0 key=(null) >type=SERVICE_START msg=audit(1388670310.022:117): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="systemd-tmpfiles-clean" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_STOP msg=audit(1388670310.022:118): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="systemd-tmpfiles-clean" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=AVC msg=audit(1388670360.355:119): avc: denied { execstack } for pid=1109 comm="glusterfsd" scontext=system_u:system_r:glusterd_t:s0 tcontext=system_u:system_r:glusterd_t:s0 tclass=process >type=SYSCALL msg=audit(1388670360.355:119): arch=c000003e syscall=10 success=yes exit=0 a0=7fff09b73000 a1=1000 a2=1000007 a3=0 items=0 ppid=1108 pid=1109 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="glusterfsd" exe="/usr/sbin/glusterfsd" subj=system_u:system_r:glusterd_t:s0 key=(null) >type=AVC msg=audit(1388670360.601:120): avc: denied { execstack } for pid=1140 comm="rpc.statd" scontext=system_u:system_r:rpcd_t:s0 tcontext=system_u:system_r:rpcd_t:s0 tclass=process >type=AVC msg=audit(1388670360.601:120): avc: denied { execmem } for pid=1140 comm="rpc.statd" scontext=system_u:system_r:rpcd_t:s0 tcontext=system_u:system_r:rpcd_t:s0 tclass=process >type=SYSCALL msg=audit(1388670360.601:120): arch=c000003e syscall=10 success=yes exit=0 a0=7fff14ced000 a1=1000 a2=1000007 a3=0 items=0 ppid=1130 pid=1140 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="rpc.statd" exe="/usr/sbin/rpc.statd" subj=system_u:system_r:rpcd_t:s0 key=(null) >type=SERVICE_STOP msg=audit(1388670360.626:121): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="nfs-lock" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=failed' >type=AVC msg=audit(1388670686.370:122): avc: denied { create } for pid=1124 comm="glusterfsd" name="fstest_d8659d9688ab46cae3292ed5ab56776d" scontext=system_u:system_r:glusterd_t:s0 tcontext=system_u:object_r:glusterd_brick_t:s0 tclass=fifo_file >type=SYSCALL msg=audit(1388670686.370:122): arch=c000003e syscall=133 success=yes exit=0 a0=7ff8878fbab0 a1=11a4 a2=0 a3=2 items=0 ppid=1 pid=1124 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="glusterfsd" exe="/usr/sbin/glusterfsd" subj=system_u:system_r:glusterd_t:s0 key=(null) >type=AVC msg=audit(1388670686.370:123): avc: denied { getattr } for pid=1124 comm="glusterfsd" path="/export/test2/fstest_f331f71e1ccde711b47ec14211665587/fstest_d8659d9688ab46cae3292ed5ab56776d" dev="vdb" ino=17024036 scontext=system_u:system_r:glusterd_t:s0 tcontext=system_u:object_r:glusterd_brick_t:s0 tclass=fifo_file >type=SYSCALL msg=audit(1388670686.370:123): arch=c000003e syscall=6 success=yes exit=0 a0=7ff8878fbab0 a1=7ff8878fb930 a2=7ff8878fb930 a3=2 items=0 ppid=1 pid=1124 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="glusterfsd" exe="/usr/sbin/glusterfsd" subj=system_u:system_r:glusterd_t:s0 key=(null) >type=AVC msg=audit(1388670686.370:124): avc: denied { setattr } for pid=1124 comm="glusterfsd" name="fstest_d8659d9688ab46cae3292ed5ab56776d" dev="vdb" ino=17024036 scontext=system_u:system_r:glusterd_t:s0 tcontext=system_u:object_r:glusterd_brick_t:s0 tclass=fifo_file >type=SYSCALL msg=audit(1388670686.370:124): arch=c000003e syscall=189 success=yes exit=0 a0=7ff8878fbab0 a1=7ff88d20a454 a2=7ff895162bd0 a3=10 items=0 ppid=1 pid=1124 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="glusterfsd" exe="/usr/sbin/glusterfsd" subj=system_u:system_r:glusterd_t:s0 key=(null) >type=AVC msg=audit(1388670686.370:125): avc: denied { link } for pid=1124 comm="glusterfsd" name="fstest_d8659d9688ab46cae3292ed5ab56776d" dev="vdb" ino=17024036 scontext=system_u:system_r:glusterd_t:s0 tcontext=system_u:object_r:glusterd_brick_t:s0 tclass=fifo_file >type=SYSCALL msg=audit(1388670686.370:125): arch=c000003e syscall=265 success=yes exit=0 a0=ffffffffffffff9c a1=7ff8878fbab0 a2=ffffffffffffff9c a3=7ff8878fb7c0 items=0 ppid=1 pid=1124 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="glusterfsd" exe="/usr/sbin/glusterfsd" subj=system_u:system_r:glusterd_t:s0 key=(null) >type=AVC msg=audit(1388670686.423:126): avc: denied { unlink } for pid=1124 comm="glusterfsd" name="2546b4c8-9200-453b-9460-6356bcf0033b" dev="vdb" ino=17024036 scontext=system_u:system_r:glusterd_t:s0 tcontext=system_u:object_r:glusterd_brick_t:s0 tclass=fifo_file >type=SYSCALL msg=audit(1388670686.423:126): arch=c000003e syscall=87 success=yes exit=0 a0=7ff8878fb790 a1=7ff8878fb8f0 a2=7ff8878fb8f0 a3=7ff892c54440 items=0 ppid=1 pid=1124 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="glusterfsd" exe="/usr/sbin/glusterfsd" subj=system_u:system_r:glusterd_t:s0 key=(null) >type=AVC msg=audit(1388670689.715:127): avc: denied { read } for pid=1149 comm="glusterfsd" name="03464e78-ca5f-440f-8534-690b011a3d55" dev="vdb" ino=17024040 scontext=system_u:system_r:glusterd_t:s0 tcontext=system_u:object_r:glusterd_brick_t:s0 tclass=fifo_file >type=SYSCALL msg=audit(1388670689.715:127): arch=c000003e syscall=192 success=no exit=-95 a0=7ff886affb60 a1=7ff895189c70 a2=0 a3=0 items=0 ppid=1 pid=1149 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="glusterfsd" exe="/usr/sbin/glusterfsd" subj=system_u:system_r:glusterd_t:s0 key=(null) >type=AVC msg=audit(1388670709.869:128): avc: denied { write } for pid=1150 comm="glusterfsd" name="fstest_a943ea53b0444799117318bae0db1228" dev="vdb" ino=17024084 scontext=system_u:system_r:glusterd_t:s0 tcontext=system_u:object_r:glusterd_brick_t:s0 tclass=fifo_file >type=SYSCALL msg=audit(1388670709.869:128): arch=c000003e syscall=94 success=yes exit=0 a0=7f5a6449cad0 a1=ffffffff a2=ffffffff a3=0 items=0 ppid=1 pid=1150 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="glusterfsd" exe="/usr/sbin/glusterfsd" subj=system_u:system_r:glusterd_t:s0 key=(null) >type=AVC msg=audit(1388670747.924:129): avc: denied { rename } for pid=1150 comm="glusterfsd" name="fstest_1ac7d5df7490fc4a39a915beadbb5fd5" dev="vdb" ino=324 scontext=system_u:system_r:glusterd_t:s0 tcontext=system_u:object_r:glusterd_brick_t:s0 tclass=fifo_file >type=SYSCALL msg=audit(1388670747.924:129): arch=c000003e syscall=82 success=yes exit=0 a0=7f5a6449c960 a1=7f5a6449c880 a2=ffffffffffffff60 a3=0 items=0 ppid=1 pid=1150 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="glusterfsd" exe="/usr/sbin/glusterfsd" subj=system_u:system_r:glusterd_t:s0 key=(null) >type=SERVICE_START msg=audit(1388671094.631:130): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="NetworkManager-dispatcher" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_STOP msg=audit(1388671105.013:131): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="NetworkManager-dispatcher" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=SERVICE_STOP msg=audit(1388671176.141:132): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="glusterd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=AVC msg=audit(1388671176.156:133): avc: denied { execstack } for pid=1213 comm="glusterd" scontext=system_u:system_r:glusterd_t:s0 tcontext=system_u:system_r:glusterd_t:s0 tclass=process >type=AVC msg=audit(1388671176.156:133): avc: denied { execmem } for pid=1213 comm="glusterd" scontext=system_u:system_r:glusterd_t:s0 tcontext=system_u:system_r:glusterd_t:s0 tclass=process >type=SYSCALL msg=audit(1388671176.156:133): arch=c000003e syscall=10 success=yes exit=0 a0=7fff12e2e000 a1=1000 a2=1000007 a3=0 items=0 ppid=1212 pid=1213 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="glusterd" exe="/usr/sbin/glusterfsd" subj=system_u:system_r:glusterd_t:s0 key=(null) >type=SERVICE_START msg=audit(1388671177.916:134): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg=' comm="glusterd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' >type=AVC msg=audit(1388671178.021:135): avc: denied { execstack } for pid=1270 comm="rpc.statd" scontext=system_u:system_r:rpcd_t:s0 tcontext=system_u:system_r:rpcd_t:s0 tclass=process >type=AVC msg=audit(1388671178.021:135): avc: denied { execmem } for pid=1270 comm="rpc.statd" scontext=system_u:system_r:rpcd_t:s0 tcontext=system_u:system_r:rpcd_t:s0 tclass=process >type=SYSCALL msg=audit(1388671178.021:135): arch=c000003e syscall=10 success=yes exit=0 a0=7fff82d05000 a1=1000 a2=1000007 a3=0 items=0 ppid=1252 pid=1270 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="rpc.statd" exe="/usr/sbin/rpc.statd" subj=system_u:system_r:rpcd_t:s0 key=(null) >type=USER_ACCT msg=audit(1388671262.190:136): pid=1275 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:crond_t:s0-s0:c0.c1023 msg='op=PAM:accounting acct="root" exe="/usr/sbin/crond" hostname=? addr=? terminal=cron res=success' >type=CRED_ACQ msg=audit(1388671262.190:137): pid=1275 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:crond_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/crond" hostname=? addr=? terminal=cron res=success' >type=LOGIN msg=audit(1388671262.191:138): pid=1275 uid=0 old auid=4294967295 new auid=0 old ses=4294967295 new ses=4 res=1 >type=USER_START msg=audit(1388671262.225:139): pid=1275 uid=0 auid=0 ses=4 subj=system_u:system_r:crond_t:s0-s0:c0.c1023 msg='op=PAM:session_open acct="root" exe="/usr/sbin/crond" hostname=? addr=? terminal=cron res=success' >type=CRED_REFR msg=audit(1388671262.226:140): pid=1275 uid=0 auid=0 ses=4 subj=system_u:system_r:crond_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/crond" hostname=? addr=? terminal=cron res=success' >type=CRED_DISP msg=audit(1388671262.571:141): pid=1275 uid=0 auid=0 ses=4 subj=system_u:system_r:crond_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/crond" hostname=? addr=? terminal=cron res=success' >type=USER_END msg=audit(1388671262.577:142): pid=1275 uid=0 auid=0 ses=4 subj=system_u:system_r:crond_t:s0-s0:c0.c1023 msg='op=PAM:session_close acct="root" exe="/usr/sbin/crond" hostname=? addr=? terminal=cron res=success' >type=AVC msg=audit(1388671514.384:143): avc: denied { execstack } for pid=1331 comm="glusterfsd" scontext=system_u:system_r:glusterd_t:s0 tcontext=system_u:system_r:glusterd_t:s0 tclass=process >type=AVC msg=audit(1388671514.384:143): avc: denied { execmem } for pid=1331 comm="glusterfsd" scontext=system_u:system_r:glusterd_t:s0 tcontext=system_u:system_r:glusterd_t:s0 tclass=process >type=SYSCALL msg=audit(1388671514.384:143): arch=c000003e syscall=10 success=yes exit=0 a0=7ffff3cfb000 a1=1000 a2=1000007 a3=0 items=0 ppid=1330 pid=1331 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="glusterfsd" exe="/usr/sbin/glusterfsd" subj=system_u:system_r:glusterd_t:s0 key=(null) >type=AVC msg=audit(1388671516.533:144): avc: denied { execstack } for pid=1353 comm="rpc.statd" scontext=system_u:system_r:rpcd_t:s0 tcontext=system_u:system_r:rpcd_t:s0 tclass=process >type=AVC msg=audit(1388671516.533:144): avc: denied { execmem } for pid=1353 comm="rpc.statd" scontext=system_u:system_r:rpcd_t:s0 tcontext=system_u:system_r:rpcd_t:s0 tclass=process >type=SYSCALL msg=audit(1388671516.533:144): arch=c000003e syscall=10 success=yes exit=0 a0=7fff2ee78000 a1=1000 a2=1000007 a3=0 items=0 ppid=1341 pid=1353 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="rpc.statd" exe="/usr/sbin/rpc.statd" subj=system_u:system_r:rpcd_t:s0 key=(null) >type=AVC msg=audit(1388671580.330:145): avc: denied { create } for pid=1362 comm="glusterfs" name="cf0f59ee-69a8-4c1f-8f57-9654ad51769f.sock" scontext=system_u:system_r:glusterd_t:s0 tcontext=system_u:object_r:glusterd_var_lib_t:s0 tclass=sock_file >type=SYSCALL msg=audit(1388671580.330:145): arch=c000003e syscall=49 success=yes exit=0 a0=6 a1=7f3239a16d38 a2=6e a3=7f3238908718 items=0 ppid=1361 pid=1362 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="glusterfs" exe="/usr/sbin/glusterfsd" subj=system_u:system_r:glusterd_t:s0 key=(null) >type=AVC msg=audit(1388671585.320:146): avc: denied { write } for pid=1216 comm="glusterd" name="cf0f59ee-69a8-4c1f-8f57-9654ad51769f.sock" dev="dm-0" ino=786689 scontext=system_u:system_r:glusterd_t:s0 tcontext=system_u:object_r:glusterd_var_lib_t:s0 tclass=sock_file >type=SYSCALL msg=audit(1388671585.320:146): arch=c000003e syscall=42 success=yes exit=0 a0=18 a1=7f6b04010f40 a2=6e a3=7f6b2377b590 items=0 ppid=1 pid=1216 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="glusterd" exe="/usr/sbin/glusterfsd" subj=system_u:system_r:glusterd_t:s0 key=(null) >type=AVC msg=audit(1388671585.729:147): avc: denied { unlink } for pid=1365 comm="glusterfs" name="cf0f59ee-69a8-4c1f-8f57-9654ad51769f.sock" dev="dm-0" ino=786689 scontext=system_u:system_r:glusterd_t:s0 tcontext=system_u:object_r:glusterd_var_lib_t:s0 tclass=sock_file >type=SYSCALL msg=audit(1388671585.729:147): arch=c000003e syscall=87 success=yes exit=0 a0=7f3239a068c0 a1=7f323697da70 a2=7f3239a31330 a3=52c57261 items=0 ppid=1 pid=1365 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="glusterfs" exe="/usr/sbin/glusterfsd" subj=system_u:system_r:glusterd_t:s0 key=(null) >type=AVC msg=audit(1388671917.066:148): avc: denied { execstack } for pid=25746 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=AVC msg=audit(1388671917.066:148): avc: denied { execmem } for pid=25746 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=SYSCALL msg=audit(1388671917.066:148): arch=c000003e syscall=10 success=yes exit=0 a0=7fff96438000 a1=1000 a2=1000007 a3=0 items=0 ppid=677 pid=25746 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 key=(null) >type=CRYPTO_KEY_USER msg=audit(1388671917.083:149): pid=25747 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25747 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388671917.084:150): pid=25747 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25747 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388671917.088:151): pid=25746 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-client cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25747 suid=74 rport=45012 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388671917.088:152): pid=25746 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-server cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25747 suid=74 rport=45012 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388671918.470:153): pid=25746 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25747 suid=74 rport=45012 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_ERR msg=audit(1388671918.470:154): pid=25746 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:bad_ident acct="?" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=failed' >type=CRYPTO_KEY_USER msg=audit(1388671918.470:155): pid=25746 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25746 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388671918.470:156): pid=25746 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25746 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_LOGIN msg=audit(1388671918.471:157): pid=25746 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=login acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=ssh res=failed' >type=AVC msg=audit(1388671918.495:158): avc: denied { execstack } for pid=25748 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=AVC msg=audit(1388671918.495:158): avc: denied { execmem } for pid=25748 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=SYSCALL msg=audit(1388671918.495:158): arch=c000003e syscall=10 success=yes exit=0 a0=7fffa3981000 a1=1000 a2=1000007 a3=0 items=0 ppid=677 pid=25748 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 key=(null) >type=CRYPTO_KEY_USER msg=audit(1388671918.512:159): pid=25749 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25749 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388671918.512:160): pid=25749 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25749 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388671918.513:161): pid=25748 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-client cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25749 suid=74 rport=45013 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388671918.513:162): pid=25748 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-server cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25749 suid=74 rport=45013 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388671918.584:163): pid=25748 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=pubkey acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=ssh res=failed' >type=CRYPTO_KEY_USER msg=audit(1388671918.589:164): pid=25748 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25749 suid=74 rport=45013 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_ERR msg=audit(1388671918.591:165): pid=25748 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:bad_ident acct="?" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=failed' >type=CRYPTO_KEY_USER msg=audit(1388671918.594:166): pid=25748 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25748 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388671918.594:167): pid=25748 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25748 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_LOGIN msg=audit(1388671918.594:168): pid=25748 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=login acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=ssh res=failed' >type=CRYPTO_KEY_USER msg=audit(1388671918.641:169): pid=25751 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25751 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388671918.641:170): pid=25751 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25751 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388671918.643:171): pid=25750 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-client cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25751 suid=74 rport=45014 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388671918.643:172): pid=25750 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-server cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25751 suid=74 rport=45014 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388671920.562:173): pid=25750 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:authentication acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_ACCT msg=audit(1388671920.566:174): pid=25750 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:accounting acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388671920.567:175): pid=25750 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25751 suid=74 rport=45014 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388671920.570:176): pid=25750 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=success acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=ssh res=success' >type=CRED_ACQ msg=audit(1388671920.572:177): pid=25750 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=LOGIN msg=audit(1388671920.573:178): pid=25750 uid=0 old auid=4294967295 new auid=0 old ses=4294967295 new ses=5 res=1 >type=USER_ROLE_CHANGE msg=audit(1388671920.631:179): pid=25750 uid=0 auid=0 ses=5 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='pam: default-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 selected-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388671920.664:180): pid=25750 uid=0 auid=0 ses=5 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:session_open acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_LOGIN msg=audit(1388671920.669:181): pid=25750 uid=0 auid=0 ses=5 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388671920.670:182): pid=25750 uid=0 auid=0 ses=5 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388671920.673:183): pid=25754 uid=0 auid=0 ses=5 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25754 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388671920.673:184): pid=25754 uid=0 auid=0 ses=5 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25754 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRED_REFR msg=audit(1388671920.674:185): pid=25754 uid=0 auid=0 ses=5 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388671920.717:186): pid=25750 uid=0 auid=0 ses=5 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:session_close acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRED_DISP msg=audit(1388671920.717:187): pid=25750 uid=0 auid=0 ses=5 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388671920.717:188): pid=25750 uid=0 auid=0 ses=5 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_LOGOUT msg=audit(1388671920.717:189): pid=25750 uid=0 auid=0 ses=5 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388671920.717:190): pid=25750 uid=0 auid=0 ses=5 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25750 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388671920.717:191): pid=25750 uid=0 auid=0 ses=5 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25750 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388671920.717:192): pid=25750 uid=0 auid=0 ses=5 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25750 suid=0 rport=45014 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=AVC msg=audit(1388672056.144:193): avc: denied { execstack } for pid=25764 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=AVC msg=audit(1388672056.144:193): avc: denied { execmem } for pid=25764 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=SYSCALL msg=audit(1388672056.144:193): arch=c000003e syscall=10 success=yes exit=0 a0=7fff4c6b4000 a1=1000 a2=1000007 a3=0 items=0 ppid=677 pid=25764 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 key=(null) >type=CRYPTO_KEY_USER msg=audit(1388672056.153:194): pid=25765 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25765 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672056.153:195): pid=25765 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25765 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388672056.160:196): pid=25764 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-client cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25765 suid=74 rport=45015 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388672056.160:197): pid=25764 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-server cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25765 suid=74 rport=45015 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672056.224:198): pid=25764 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=pubkey_auth rport=45015 acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672056.224:199): pid=25764 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=key algo=ssh-rsa size=2048 fp=86:e1:7c:55:70:34:9a:ea:0d:4e:4e:63:0b:b1:ec:ae rport=45015 acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_ACCT msg=audit(1388672056.229:200): pid=25764 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:accounting acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672056.230:201): pid=25764 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25765 suid=74 rport=45015 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672056.231:202): pid=25764 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=success acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=ssh res=success' >type=CRED_ACQ msg=audit(1388672056.231:203): pid=25764 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=LOGIN msg=audit(1388672056.232:204): pid=25764 uid=0 old auid=4294967295 new auid=0 old ses=4294967295 new ses=6 res=1 >type=USER_ROLE_CHANGE msg=audit(1388672056.280:205): pid=25764 uid=0 auid=0 ses=6 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='pam: default-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 selected-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672056.309:206): pid=25764 uid=0 auid=0 ses=6 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:session_open acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_LOGIN msg=audit(1388672056.312:207): pid=25764 uid=0 auid=0 ses=6 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672056.313:208): pid=25764 uid=0 auid=0 ses=6 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672056.318:209): pid=25767 uid=0 auid=0 ses=6 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25767 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672056.318:210): pid=25767 uid=0 auid=0 ses=6 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25767 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRED_REFR msg=audit(1388672056.319:211): pid=25767 uid=0 auid=0 ses=6 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672056.478:212): pid=25764 uid=0 auid=0 ses=6 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:session_close acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRED_DISP msg=audit(1388672056.478:213): pid=25764 uid=0 auid=0 ses=6 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672056.480:214): pid=25764 uid=0 auid=0 ses=6 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_LOGOUT msg=audit(1388672056.480:215): pid=25764 uid=0 auid=0 ses=6 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672056.481:216): pid=25764 uid=0 auid=0 ses=6 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25764 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672056.481:217): pid=25764 uid=0 auid=0 ses=6 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25764 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672056.481:218): pid=25764 uid=0 auid=0 ses=6 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25764 suid=0 rport=45015 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=AVC msg=audit(1388672067.591:219): avc: denied { execstack } for pid=25775 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=AVC msg=audit(1388672067.591:219): avc: denied { execmem } for pid=25775 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=SYSCALL msg=audit(1388672067.591:219): arch=c000003e syscall=10 success=yes exit=0 a0=7ffff3e36000 a1=1000 a2=1000007 a3=0 items=0 ppid=677 pid=25775 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 key=(null) >type=CRYPTO_KEY_USER msg=audit(1388672067.598:220): pid=25776 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25776 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672067.598:221): pid=25776 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25776 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388672067.599:222): pid=25775 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-client cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25776 suid=74 rport=45016 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388672067.600:223): pid=25775 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-server cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25776 suid=74 rport=45016 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672067.675:224): pid=25775 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=pubkey_auth rport=45016 acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672067.675:225): pid=25775 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=key algo=ssh-rsa size=2048 fp=86:e1:7c:55:70:34:9a:ea:0d:4e:4e:63:0b:b1:ec:ae rport=45016 acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_ACCT msg=audit(1388672067.680:226): pid=25775 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:accounting acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672067.681:227): pid=25775 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25776 suid=74 rport=45016 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672067.682:228): pid=25775 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=success acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=ssh res=success' >type=CRED_ACQ msg=audit(1388672067.682:229): pid=25775 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=LOGIN msg=audit(1388672067.683:230): pid=25775 uid=0 old auid=4294967295 new auid=0 old ses=4294967295 new ses=7 res=1 >type=USER_ROLE_CHANGE msg=audit(1388672067.729:231): pid=25775 uid=0 auid=0 ses=7 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='pam: default-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 selected-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672067.752:232): pid=25775 uid=0 auid=0 ses=7 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:session_open acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_LOGIN msg=audit(1388672067.754:233): pid=25775 uid=0 auid=0 ses=7 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672067.755:234): pid=25775 uid=0 auid=0 ses=7 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672067.756:235): pid=25778 uid=0 auid=0 ses=7 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25778 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672067.756:236): pid=25778 uid=0 auid=0 ses=7 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25778 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRED_REFR msg=audit(1388672067.758:237): pid=25778 uid=0 auid=0 ses=7 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672067.903:238): pid=25775 uid=0 auid=0 ses=7 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_LOGOUT msg=audit(1388672067.903:239): pid=25775 uid=0 auid=0 ses=7 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672067.909:240): pid=25775 uid=0 auid=0 ses=7 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:session_close acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRED_DISP msg=audit(1388672067.909:241): pid=25775 uid=0 auid=0 ses=7 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672067.910:242): pid=25775 uid=0 auid=0 ses=7 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25775 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672067.910:243): pid=25775 uid=0 auid=0 ses=7 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25775 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672067.910:244): pid=25775 uid=0 auid=0 ses=7 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25775 suid=0 rport=45016 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=AVC msg=audit(1388672079.013:245): avc: denied { execstack } for pid=25786 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=AVC msg=audit(1388672079.013:245): avc: denied { execmem } for pid=25786 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=SYSCALL msg=audit(1388672079.013:245): arch=c000003e syscall=10 success=yes exit=0 a0=7ffff4e86000 a1=1000 a2=1000007 a3=0 items=0 ppid=677 pid=25786 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 key=(null) >type=CRYPTO_KEY_USER msg=audit(1388672079.025:246): pid=25787 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25787 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672079.026:247): pid=25787 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25787 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388672079.029:248): pid=25786 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-client cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25787 suid=74 rport=45017 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388672079.029:249): pid=25786 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-server cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25787 suid=74 rport=45017 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672079.108:250): pid=25786 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=pubkey_auth rport=45017 acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672079.108:251): pid=25786 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=key algo=ssh-rsa size=2048 fp=86:e1:7c:55:70:34:9a:ea:0d:4e:4e:63:0b:b1:ec:ae rport=45017 acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_ACCT msg=audit(1388672079.122:252): pid=25786 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:accounting acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672079.125:253): pid=25786 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25787 suid=74 rport=45017 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672079.129:254): pid=25786 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=success acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=ssh res=success' >type=CRED_ACQ msg=audit(1388672079.129:255): pid=25786 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=LOGIN msg=audit(1388672079.129:256): pid=25786 uid=0 old auid=4294967295 new auid=0 old ses=4294967295 new ses=8 res=1 >type=USER_ROLE_CHANGE msg=audit(1388672079.191:257): pid=25786 uid=0 auid=0 ses=8 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='pam: default-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 selected-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672079.232:258): pid=25786 uid=0 auid=0 ses=8 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:session_open acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_LOGIN msg=audit(1388672079.236:259): pid=25786 uid=0 auid=0 ses=8 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672079.237:260): pid=25786 uid=0 auid=0 ses=8 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672079.238:261): pid=25789 uid=0 auid=0 ses=8 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25789 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672079.238:262): pid=25789 uid=0 auid=0 ses=8 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25789 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRED_REFR msg=audit(1388672079.240:263): pid=25789 uid=0 auid=0 ses=8 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672079.410:264): pid=25786 uid=0 auid=0 ses=8 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_LOGOUT msg=audit(1388672079.410:265): pid=25786 uid=0 auid=0 ses=8 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672079.420:266): pid=25786 uid=0 auid=0 ses=8 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:session_close acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRED_DISP msg=audit(1388672079.420:267): pid=25786 uid=0 auid=0 ses=8 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672079.423:268): pid=25786 uid=0 auid=0 ses=8 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25786 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672079.423:269): pid=25786 uid=0 auid=0 ses=8 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25786 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672079.423:270): pid=25786 uid=0 auid=0 ses=8 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25786 suid=0 rport=45017 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=AVC msg=audit(1388672090.517:271): avc: denied { execstack } for pid=25797 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=AVC msg=audit(1388672090.517:271): avc: denied { execmem } for pid=25797 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=SYSCALL msg=audit(1388672090.517:271): arch=c000003e syscall=10 success=yes exit=0 a0=7fff03a69000 a1=1000 a2=1000007 a3=0 items=0 ppid=677 pid=25797 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 key=(null) >type=CRYPTO_KEY_USER msg=audit(1388672090.532:272): pid=25798 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25798 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672090.533:273): pid=25798 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25798 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388672090.536:274): pid=25797 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-client cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25798 suid=74 rport=45018 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388672090.536:275): pid=25797 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-server cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25798 suid=74 rport=45018 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672090.608:276): pid=25797 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=pubkey_auth rport=45018 acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672090.608:277): pid=25797 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=key algo=ssh-rsa size=2048 fp=86:e1:7c:55:70:34:9a:ea:0d:4e:4e:63:0b:b1:ec:ae rport=45018 acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_ACCT msg=audit(1388672090.621:278): pid=25797 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:accounting acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672090.622:279): pid=25797 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25798 suid=74 rport=45018 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672090.627:280): pid=25797 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=success acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=ssh res=success' >type=CRED_ACQ msg=audit(1388672090.627:281): pid=25797 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=LOGIN msg=audit(1388672090.627:282): pid=25797 uid=0 old auid=4294967295 new auid=0 old ses=4294967295 new ses=9 res=1 >type=USER_ROLE_CHANGE msg=audit(1388672090.680:283): pid=25797 uid=0 auid=0 ses=9 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='pam: default-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 selected-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672090.703:284): pid=25797 uid=0 auid=0 ses=9 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:session_open acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_LOGIN msg=audit(1388672090.706:285): pid=25797 uid=0 auid=0 ses=9 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672090.706:286): pid=25797 uid=0 auid=0 ses=9 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672090.707:287): pid=25800 uid=0 auid=0 ses=9 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25800 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672090.707:288): pid=25800 uid=0 auid=0 ses=9 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25800 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRED_REFR msg=audit(1388672090.709:289): pid=25800 uid=0 auid=0 ses=9 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672090.864:290): pid=25797 uid=0 auid=0 ses=9 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:session_close acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRED_DISP msg=audit(1388672090.865:291): pid=25797 uid=0 auid=0 ses=9 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672090.866:292): pid=25797 uid=0 auid=0 ses=9 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_LOGOUT msg=audit(1388672090.866:293): pid=25797 uid=0 auid=0 ses=9 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672090.866:294): pid=25797 uid=0 auid=0 ses=9 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25797 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672090.866:295): pid=25797 uid=0 auid=0 ses=9 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25797 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672090.866:296): pid=25797 uid=0 auid=0 ses=9 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25797 suid=0 rport=45018 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=AVC msg=audit(1388672101.985:297): avc: denied { execstack } for pid=25808 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=AVC msg=audit(1388672101.985:297): avc: denied { execmem } for pid=25808 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=SYSCALL msg=audit(1388672101.985:297): arch=c000003e syscall=10 success=yes exit=0 a0=7fff7adfd000 a1=1000 a2=1000007 a3=0 items=0 ppid=677 pid=25808 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 key=(null) >type=CRYPTO_KEY_USER msg=audit(1388672102.001:298): pid=25809 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25809 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672102.001:299): pid=25809 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25809 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388672102.008:300): pid=25808 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-client cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25809 suid=74 rport=45019 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388672102.008:301): pid=25808 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-server cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25809 suid=74 rport=45019 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672102.090:302): pid=25808 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=pubkey_auth rport=45019 acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672102.090:303): pid=25808 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=key algo=ssh-rsa size=2048 fp=86:e1:7c:55:70:34:9a:ea:0d:4e:4e:63:0b:b1:ec:ae rport=45019 acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_ACCT msg=audit(1388672102.094:304): pid=25808 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:accounting acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672102.097:305): pid=25808 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25809 suid=74 rport=45019 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672102.099:306): pid=25808 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=success acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=ssh res=success' >type=CRED_ACQ msg=audit(1388672102.099:307): pid=25808 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=LOGIN msg=audit(1388672102.099:308): pid=25808 uid=0 old auid=4294967295 new auid=0 old ses=4294967295 new ses=10 res=1 >type=USER_ROLE_CHANGE msg=audit(1388672102.148:309): pid=25808 uid=0 auid=0 ses=10 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='pam: default-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 selected-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672102.184:310): pid=25808 uid=0 auid=0 ses=10 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:session_open acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_LOGIN msg=audit(1388672102.187:311): pid=25808 uid=0 auid=0 ses=10 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672102.187:312): pid=25808 uid=0 auid=0 ses=10 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672102.188:313): pid=25811 uid=0 auid=0 ses=10 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25811 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672102.189:314): pid=25811 uid=0 auid=0 ses=10 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25811 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRED_REFR msg=audit(1388672102.193:315): pid=25811 uid=0 auid=0 ses=10 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672102.354:316): pid=25808 uid=0 auid=0 ses=10 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:session_close acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRED_DISP msg=audit(1388672102.354:317): pid=25808 uid=0 auid=0 ses=10 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672102.354:318): pid=25808 uid=0 auid=0 ses=10 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_LOGOUT msg=audit(1388672102.355:319): pid=25808 uid=0 auid=0 ses=10 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672102.355:320): pid=25808 uid=0 auid=0 ses=10 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25808 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672102.355:321): pid=25808 uid=0 auid=0 ses=10 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25808 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672102.355:322): pid=25808 uid=0 auid=0 ses=10 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25808 suid=0 rport=45019 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=AVC msg=audit(1388672112.473:323): avc: denied { execstack } for pid=25819 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=AVC msg=audit(1388672112.473:323): avc: denied { execmem } for pid=25819 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=SYSCALL msg=audit(1388672112.473:323): arch=c000003e syscall=10 success=yes exit=0 a0=7fff500b2000 a1=1000 a2=1000007 a3=0 items=0 ppid=677 pid=25819 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 key=(null) >type=CRYPTO_KEY_USER msg=audit(1388672112.483:324): pid=25821 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25821 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672112.483:325): pid=25821 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25821 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388672112.489:326): pid=25819 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-client cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25821 suid=74 rport=45020 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388672112.489:327): pid=25819 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-server cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25821 suid=74 rport=45020 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672112.563:328): pid=25819 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=pubkey_auth rport=45020 acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672112.563:329): pid=25819 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=key algo=ssh-rsa size=2048 fp=86:e1:7c:55:70:34:9a:ea:0d:4e:4e:63:0b:b1:ec:ae rport=45020 acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_ACCT msg=audit(1388672112.570:330): pid=25819 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:accounting acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672112.571:331): pid=25819 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25821 suid=74 rport=45020 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672112.573:332): pid=25819 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=success acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=ssh res=success' >type=CRED_ACQ msg=audit(1388672112.573:333): pid=25819 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=LOGIN msg=audit(1388672112.574:334): pid=25819 uid=0 old auid=4294967295 new auid=0 old ses=4294967295 new ses=11 res=1 >type=USER_ROLE_CHANGE msg=audit(1388672112.621:335): pid=25819 uid=0 auid=0 ses=11 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='pam: default-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 selected-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672112.647:336): pid=25819 uid=0 auid=0 ses=11 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:session_open acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_LOGIN msg=audit(1388672112.649:337): pid=25819 uid=0 auid=0 ses=11 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672112.649:338): pid=25819 uid=0 auid=0 ses=11 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672112.650:339): pid=25823 uid=0 auid=0 ses=11 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25823 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672112.650:340): pid=25823 uid=0 auid=0 ses=11 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25823 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRED_REFR msg=audit(1388672112.651:341): pid=25823 uid=0 auid=0 ses=11 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672112.810:342): pid=25819 uid=0 auid=0 ses=11 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:session_close acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRED_DISP msg=audit(1388672112.810:343): pid=25819 uid=0 auid=0 ses=11 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672112.810:344): pid=25819 uid=0 auid=0 ses=11 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_LOGOUT msg=audit(1388672112.810:345): pid=25819 uid=0 auid=0 ses=11 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672112.811:346): pid=25819 uid=0 auid=0 ses=11 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25819 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672112.811:347): pid=25819 uid=0 auid=0 ses=11 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25819 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672112.811:348): pid=25819 uid=0 auid=0 ses=11 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25819 suid=0 rport=45020 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=AVC msg=audit(1388672122.910:349): avc: denied { execstack } for pid=25832 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=AVC msg=audit(1388672122.910:349): avc: denied { execmem } for pid=25832 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=SYSCALL msg=audit(1388672122.910:349): arch=c000003e syscall=10 success=yes exit=0 a0=7fffe11fb000 a1=1000 a2=1000007 a3=0 items=0 ppid=677 pid=25832 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 key=(null) >type=CRYPTO_KEY_USER msg=audit(1388672122.924:350): pid=25833 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25833 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672122.926:351): pid=25833 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25833 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388672122.931:352): pid=25832 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-client cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25833 suid=74 rport=45021 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388672122.931:353): pid=25832 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-server cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25833 suid=74 rport=45021 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672123.082:354): pid=25832 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=pubkey_auth rport=45021 acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672123.082:355): pid=25832 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=key algo=ssh-rsa size=2048 fp=86:e1:7c:55:70:34:9a:ea:0d:4e:4e:63:0b:b1:ec:ae rport=45021 acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_ACCT msg=audit(1388672123.089:356): pid=25832 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:accounting acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672123.091:357): pid=25832 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25833 suid=74 rport=45021 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672123.092:358): pid=25832 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=success acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=ssh res=success' >type=CRED_ACQ msg=audit(1388672123.092:359): pid=25832 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=LOGIN msg=audit(1388672123.093:360): pid=25832 uid=0 old auid=4294967295 new auid=0 old ses=4294967295 new ses=12 res=1 >type=USER_ROLE_CHANGE msg=audit(1388672123.138:361): pid=25832 uid=0 auid=0 ses=12 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='pam: default-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 selected-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672123.165:362): pid=25832 uid=0 auid=0 ses=12 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:session_open acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_LOGIN msg=audit(1388672123.167:363): pid=25832 uid=0 auid=0 ses=12 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672123.168:364): pid=25832 uid=0 auid=0 ses=12 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672123.169:365): pid=25835 uid=0 auid=0 ses=12 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25835 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672123.169:366): pid=25835 uid=0 auid=0 ses=12 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25835 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRED_REFR msg=audit(1388672123.170:367): pid=25835 uid=0 auid=0 ses=12 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672123.315:368): pid=25832 uid=0 auid=0 ses=12 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_LOGOUT msg=audit(1388672123.315:369): pid=25832 uid=0 auid=0 ses=12 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672123.331:370): pid=25832 uid=0 auid=0 ses=12 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:session_close acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRED_DISP msg=audit(1388672123.331:371): pid=25832 uid=0 auid=0 ses=12 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672123.331:372): pid=25832 uid=0 auid=0 ses=12 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25832 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672123.331:373): pid=25832 uid=0 auid=0 ses=12 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25832 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672123.331:374): pid=25832 uid=0 auid=0 ses=12 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25832 suid=0 rport=45021 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=AVC msg=audit(1388672134.433:375): avc: denied { execstack } for pid=25843 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=AVC msg=audit(1388672134.433:375): avc: denied { execmem } for pid=25843 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=SYSCALL msg=audit(1388672134.433:375): arch=c000003e syscall=10 success=yes exit=0 a0=7fffe3ae2000 a1=1000 a2=1000007 a3=0 items=0 ppid=677 pid=25843 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 key=(null) >type=CRYPTO_KEY_USER msg=audit(1388672134.443:376): pid=25844 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25844 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672134.443:377): pid=25844 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25844 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388672134.450:378): pid=25843 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-client cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25844 suid=74 rport=45022 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388672134.450:379): pid=25843 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-server cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25844 suid=74 rport=45022 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672134.519:380): pid=25843 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=pubkey_auth rport=45022 acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672134.519:381): pid=25843 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=key algo=ssh-rsa size=2048 fp=86:e1:7c:55:70:34:9a:ea:0d:4e:4e:63:0b:b1:ec:ae rport=45022 acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_ACCT msg=audit(1388672134.527:382): pid=25843 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:accounting acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672134.528:383): pid=25843 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25844 suid=74 rport=45022 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672134.530:384): pid=25843 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=success acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=ssh res=success' >type=CRED_ACQ msg=audit(1388672134.530:385): pid=25843 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=LOGIN msg=audit(1388672134.530:386): pid=25843 uid=0 old auid=4294967295 new auid=0 old ses=4294967295 new ses=13 res=1 >type=USER_ROLE_CHANGE msg=audit(1388672134.583:387): pid=25843 uid=0 auid=0 ses=13 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='pam: default-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 selected-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672134.600:388): pid=25843 uid=0 auid=0 ses=13 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:session_open acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_LOGIN msg=audit(1388672134.602:389): pid=25843 uid=0 auid=0 ses=13 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672134.602:390): pid=25843 uid=0 auid=0 ses=13 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672134.603:391): pid=25846 uid=0 auid=0 ses=13 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25846 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672134.603:392): pid=25846 uid=0 auid=0 ses=13 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25846 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRED_REFR msg=audit(1388672134.605:393): pid=25846 uid=0 auid=0 ses=13 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672134.767:394): pid=25843 uid=0 auid=0 ses=13 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:session_close acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRED_DISP msg=audit(1388672134.767:395): pid=25843 uid=0 auid=0 ses=13 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672134.767:396): pid=25843 uid=0 auid=0 ses=13 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_LOGOUT msg=audit(1388672134.768:397): pid=25843 uid=0 auid=0 ses=13 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672134.768:398): pid=25843 uid=0 auid=0 ses=13 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25843 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672134.768:399): pid=25843 uid=0 auid=0 ses=13 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25843 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672134.768:400): pid=25843 uid=0 auid=0 ses=13 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25843 suid=0 rport=45022 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=AVC msg=audit(1388672144.857:401): avc: denied { execstack } for pid=25854 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=AVC msg=audit(1388672144.857:401): avc: denied { execmem } for pid=25854 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=SYSCALL msg=audit(1388672144.857:401): arch=c000003e syscall=10 success=yes exit=0 a0=7fffbc5b6000 a1=1000 a2=1000007 a3=0 items=0 ppid=677 pid=25854 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 key=(null) >type=CRYPTO_KEY_USER msg=audit(1388672144.876:402): pid=25855 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25855 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672144.876:403): pid=25855 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25855 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388672144.878:404): pid=25854 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-client cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25855 suid=74 rport=45023 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388672144.878:405): pid=25854 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-server cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25855 suid=74 rport=45023 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672144.943:406): pid=25854 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=pubkey_auth rport=45023 acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672144.943:407): pid=25854 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=key algo=ssh-rsa size=2048 fp=86:e1:7c:55:70:34:9a:ea:0d:4e:4e:63:0b:b1:ec:ae rport=45023 acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_ACCT msg=audit(1388672144.951:408): pid=25854 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:accounting acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672144.954:409): pid=25854 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25855 suid=74 rport=45023 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672144.956:410): pid=25854 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=success acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=ssh res=success' >type=CRED_ACQ msg=audit(1388672144.957:411): pid=25854 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=LOGIN msg=audit(1388672144.957:412): pid=25854 uid=0 old auid=4294967295 new auid=0 old ses=4294967295 new ses=14 res=1 >type=USER_ROLE_CHANGE msg=audit(1388672145.003:413): pid=25854 uid=0 auid=0 ses=14 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='pam: default-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 selected-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672145.028:414): pid=25854 uid=0 auid=0 ses=14 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:session_open acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_LOGIN msg=audit(1388672145.031:415): pid=25854 uid=0 auid=0 ses=14 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672145.031:416): pid=25854 uid=0 auid=0 ses=14 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672145.032:417): pid=25857 uid=0 auid=0 ses=14 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25857 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672145.032:418): pid=25857 uid=0 auid=0 ses=14 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25857 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRED_REFR msg=audit(1388672145.033:419): pid=25857 uid=0 auid=0 ses=14 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672145.191:420): pid=25854 uid=0 auid=0 ses=14 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_LOGOUT msg=audit(1388672145.191:421): pid=25854 uid=0 auid=0 ses=14 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672145.203:422): pid=25854 uid=0 auid=0 ses=14 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:session_close acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRED_DISP msg=audit(1388672145.204:423): pid=25854 uid=0 auid=0 ses=14 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672145.205:424): pid=25854 uid=0 auid=0 ses=14 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25854 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672145.206:425): pid=25854 uid=0 auid=0 ses=14 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25854 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672145.206:426): pid=25854 uid=0 auid=0 ses=14 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25854 suid=0 rport=45023 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=AVC msg=audit(1388672155.306:427): avc: denied { execstack } for pid=25865 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=AVC msg=audit(1388672155.306:427): avc: denied { execmem } for pid=25865 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=SYSCALL msg=audit(1388672155.306:427): arch=c000003e syscall=10 success=yes exit=0 a0=7fffb5c25000 a1=1000 a2=1000007 a3=0 items=0 ppid=677 pid=25865 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 key=(null) >type=CRYPTO_KEY_USER msg=audit(1388672155.316:428): pid=25866 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25866 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672155.316:429): pid=25866 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25866 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388672155.317:430): pid=25865 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-client cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25866 suid=74 rport=45024 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388672155.317:431): pid=25865 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-server cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25866 suid=74 rport=45024 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672155.381:432): pid=25865 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=pubkey_auth rport=45024 acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672155.381:433): pid=25865 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=key algo=ssh-rsa size=2048 fp=86:e1:7c:55:70:34:9a:ea:0d:4e:4e:63:0b:b1:ec:ae rport=45024 acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_ACCT msg=audit(1388672155.386:434): pid=25865 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:accounting acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672155.387:435): pid=25865 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25866 suid=74 rport=45024 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672155.389:436): pid=25865 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=success acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=ssh res=success' >type=CRED_ACQ msg=audit(1388672155.389:437): pid=25865 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=LOGIN msg=audit(1388672155.389:438): pid=25865 uid=0 old auid=4294967295 new auid=0 old ses=4294967295 new ses=15 res=1 >type=USER_ROLE_CHANGE msg=audit(1388672155.438:439): pid=25865 uid=0 auid=0 ses=15 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='pam: default-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 selected-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672155.455:440): pid=25865 uid=0 auid=0 ses=15 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:session_open acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_LOGIN msg=audit(1388672155.458:441): pid=25865 uid=0 auid=0 ses=15 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672155.458:442): pid=25865 uid=0 auid=0 ses=15 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672155.460:443): pid=25868 uid=0 auid=0 ses=15 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25868 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672155.460:444): pid=25868 uid=0 auid=0 ses=15 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25868 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRED_REFR msg=audit(1388672155.462:445): pid=25868 uid=0 auid=0 ses=15 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672155.628:446): pid=25865 uid=0 auid=0 ses=15 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:session_close acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRED_DISP msg=audit(1388672155.628:447): pid=25865 uid=0 auid=0 ses=15 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672155.629:448): pid=25865 uid=0 auid=0 ses=15 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_LOGOUT msg=audit(1388672155.629:449): pid=25865 uid=0 auid=0 ses=15 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672155.629:450): pid=25865 uid=0 auid=0 ses=15 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25865 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672155.629:451): pid=25865 uid=0 auid=0 ses=15 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25865 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672155.630:452): pid=25865 uid=0 auid=0 ses=15 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25865 suid=0 rport=45024 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=AVC msg=audit(1388672165.725:453): avc: denied { execstack } for pid=25876 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=AVC msg=audit(1388672165.725:453): avc: denied { execmem } for pid=25876 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=SYSCALL msg=audit(1388672165.725:453): arch=c000003e syscall=10 success=yes exit=0 a0=7fffca30b000 a1=1000 a2=1000007 a3=0 items=0 ppid=677 pid=25876 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 key=(null) >type=CRYPTO_KEY_USER msg=audit(1388672165.738:454): pid=25877 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25877 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672165.738:455): pid=25877 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25877 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388672165.748:456): pid=25876 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-client cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25877 suid=74 rport=45025 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388672165.748:457): pid=25876 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-server cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25877 suid=74 rport=45025 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672165.814:458): pid=25876 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=pubkey_auth rport=45025 acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672165.815:459): pid=25876 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=key algo=ssh-rsa size=2048 fp=86:e1:7c:55:70:34:9a:ea:0d:4e:4e:63:0b:b1:ec:ae rport=45025 acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_ACCT msg=audit(1388672165.823:460): pid=25876 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:accounting acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672165.825:461): pid=25876 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25877 suid=74 rport=45025 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672165.826:462): pid=25876 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=success acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=ssh res=success' >type=CRED_ACQ msg=audit(1388672165.826:463): pid=25876 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=LOGIN msg=audit(1388672165.827:464): pid=25876 uid=0 old auid=4294967295 new auid=0 old ses=4294967295 new ses=16 res=1 >type=USER_ROLE_CHANGE msg=audit(1388672165.889:465): pid=25876 uid=0 auid=0 ses=16 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='pam: default-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 selected-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672165.924:466): pid=25876 uid=0 auid=0 ses=16 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:session_open acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_LOGIN msg=audit(1388672165.932:467): pid=25876 uid=0 auid=0 ses=16 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672165.933:468): pid=25876 uid=0 auid=0 ses=16 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672165.936:469): pid=25879 uid=0 auid=0 ses=16 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25879 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672165.937:470): pid=25879 uid=0 auid=0 ses=16 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25879 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRED_REFR msg=audit(1388672165.942:471): pid=25879 uid=0 auid=0 ses=16 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672166.108:472): pid=25876 uid=0 auid=0 ses=16 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:session_close acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRED_DISP msg=audit(1388672166.108:473): pid=25876 uid=0 auid=0 ses=16 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672166.108:474): pid=25876 uid=0 auid=0 ses=16 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_LOGOUT msg=audit(1388672166.108:475): pid=25876 uid=0 auid=0 ses=16 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672166.108:476): pid=25876 uid=0 auid=0 ses=16 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25876 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672166.108:477): pid=25876 uid=0 auid=0 ses=16 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25876 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672166.108:478): pid=25876 uid=0 auid=0 ses=16 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25876 suid=0 rport=45025 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=AVC msg=audit(1388672176.211:479): avc: denied { execstack } for pid=25887 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=AVC msg=audit(1388672176.211:479): avc: denied { execmem } for pid=25887 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=SYSCALL msg=audit(1388672176.211:479): arch=c000003e syscall=10 success=yes exit=0 a0=7fff71ae6000 a1=1000 a2=1000007 a3=0 items=0 ppid=677 pid=25887 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 key=(null) >type=CRYPTO_KEY_USER msg=audit(1388672176.219:480): pid=25888 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25888 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672176.219:481): pid=25888 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25888 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388672176.221:482): pid=25887 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-client cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25888 suid=74 rport=45026 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388672176.224:483): pid=25887 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-server cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25888 suid=74 rport=45026 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672176.286:484): pid=25887 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=pubkey_auth rport=45026 acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672176.286:485): pid=25887 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=key algo=ssh-rsa size=2048 fp=86:e1:7c:55:70:34:9a:ea:0d:4e:4e:63:0b:b1:ec:ae rport=45026 acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_ACCT msg=audit(1388672176.291:486): pid=25887 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:accounting acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672176.293:487): pid=25887 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25888 suid=74 rport=45026 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672176.295:488): pid=25887 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=success acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=ssh res=success' >type=CRED_ACQ msg=audit(1388672176.295:489): pid=25887 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=LOGIN msg=audit(1388672176.295:490): pid=25887 uid=0 old auid=4294967295 new auid=0 old ses=4294967295 new ses=17 res=1 >type=USER_ROLE_CHANGE msg=audit(1388672176.351:491): pid=25887 uid=0 auid=0 ses=17 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='pam: default-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 selected-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672176.367:492): pid=25887 uid=0 auid=0 ses=17 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:session_open acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_LOGIN msg=audit(1388672176.369:493): pid=25887 uid=0 auid=0 ses=17 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672176.370:494): pid=25887 uid=0 auid=0 ses=17 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672176.371:495): pid=25890 uid=0 auid=0 ses=17 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25890 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672176.371:496): pid=25890 uid=0 auid=0 ses=17 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25890 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRED_REFR msg=audit(1388672176.373:497): pid=25890 uid=0 auid=0 ses=17 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672176.553:498): pid=25887 uid=0 auid=0 ses=17 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:session_close acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRED_DISP msg=audit(1388672176.553:499): pid=25887 uid=0 auid=0 ses=17 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672176.554:500): pid=25887 uid=0 auid=0 ses=17 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_LOGOUT msg=audit(1388672176.554:501): pid=25887 uid=0 auid=0 ses=17 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672176.554:502): pid=25887 uid=0 auid=0 ses=17 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25887 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672176.554:503): pid=25887 uid=0 auid=0 ses=17 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25887 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672176.554:504): pid=25887 uid=0 auid=0 ses=17 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25887 suid=0 rport=45026 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=AVC msg=audit(1388672209.495:505): avc: denied { execstack } for pid=25904 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=AVC msg=audit(1388672209.495:505): avc: denied { execmem } for pid=25904 comm="sshd" scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tclass=process >type=SYSCALL msg=audit(1388672209.495:505): arch=c000003e syscall=10 success=yes exit=0 a0=7fff84db7000 a1=1000 a2=1000007 a3=0 items=0 ppid=677 pid=25904 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 ses=4294967295 tty=(none) comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 key=(null) >type=CRYPTO_KEY_USER msg=audit(1388672209.513:506): pid=25905 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25905 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672209.514:507): pid=25905 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25905 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388672209.517:508): pid=25904 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-client cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25905 suid=74 rport=45027 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_SESSION msg=audit(1388672209.518:509): pid=25904 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=start direction=from-server cipher=aes128-ctr ksize=128 mac=hmac-md5-etm@openssh.com spid=25905 suid=74 rport=45027 laddr=19 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672209.593:510): pid=25904 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=pubkey_auth rport=45027 acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672209.593:511): pid=25904 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=key algo=ssh-rsa size=2048 fp=86:e1:7c:55:70:34:9a:ea:0d:4e:4e:63:0b:b1:ec:ae rport=45027 acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_ACCT msg=audit(1388672209.605:512): pid=25904 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:accounting acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672209.606:513): pid=25904 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25905 suid=74 rport=45027 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=USER_AUTH msg=audit(1388672209.610:514): pid=25904 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=success acct="root" exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=ssh res=success' >type=CRED_ACQ msg=audit(1388672209.610:515): pid=25904 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=LOGIN msg=audit(1388672209.610:516): pid=25904 uid=0 old auid=4294967295 new auid=0 old ses=4294967295 new ses=18 res=1 >type=USER_ROLE_CHANGE msg=audit(1388672209.655:517): pid=25904 uid=0 auid=0 ses=18 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='pam: default-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 selected-context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672209.691:518): pid=25904 uid=0 auid=0 ses=18 subj=system_u:system_r:sshd_t:s0-s0:c0.c1023 msg='op=PAM:session_open acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_LOGIN msg=audit(1388672209.697:519): pid=25904 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672209.697:520): pid=25904 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672209.698:521): pid=25907 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25907 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672209.699:522): pid=25907 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25907 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRED_REFR msg=audit(1388672209.703:523): pid=25907 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672212.479:524): pid=25904 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672212.481:525): pid=25921 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25921 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672212.481:526): pid=25921 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25921 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRED_REFR msg=audit(1388672212.482:527): pid=25921 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672212.610:528): pid=25904 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672212.660:529): pid=25904 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672212.662:530): pid=25924 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25924 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672212.662:531): pid=25924 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25924 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRED_REFR msg=audit(1388672212.663:532): pid=25924 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672212.761:533): pid=25904 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672212.812:534): pid=25904 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672212.813:535): pid=25927 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25927 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672212.814:536): pid=25927 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25927 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRED_REFR msg=audit(1388672212.815:537): pid=25927 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672212.900:538): pid=25904 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672212.941:539): pid=25904 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672212.942:540): pid=25930 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25930 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672212.943:541): pid=25930 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25930 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRED_REFR msg=audit(1388672212.944:542): pid=25930 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_START msg=audit(1388672212.963:543): pid=25904 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672212.965:544): pid=25933 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25933 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672212.965:545): pid=25933 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25933 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRED_REFR msg=audit(1388672212.966:546): pid=25933 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672213.019:547): pid=25904 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672213.020:548): pid=25904 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672293.307:549): pid=25904 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:session_close acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRED_DISP msg=audit(1388672293.307:550): pid=25904 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=PAM:setcred acct="root" exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_END msg=audit(1388672293.308:551): pid=25904 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=USER_LOGOUT msg=audit(1388672293.308:552): pid=25904 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=login id=0 exe="/usr/sbin/sshd" hostname=192.168.122.110 addr=192.168.122.110 terminal=ssh res=success' >type=CRYPTO_KEY_USER msg=audit(1388672293.308:553): pid=25904 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=09:89:8d:b0:82:8a:43:e8:95:ca:96:61:06:4f:1f:c4 direction=? spid=25904 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672293.308:554): pid=25904 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=server fp=58:f7:c6:b8:1b:e3:ea:46:d5:5f:00:1e:d1:60:86:3f direction=? spid=25904 suid=0 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success' >type=CRYPTO_KEY_USER msg=audit(1388672293.308:555): pid=25904 uid=0 auid=0 ses=18 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=destroy kind=session fp=? direction=both spid=25904 suid=0 rport=45027 laddr=192.168.122.209 lport=22 exe="/usr/sbin/sshd" hostname=? addr=192.168.122.110 terminal=? res=success'
You cannot view the attachment while viewing its details because your browser does not support IFRAMEs.
View the attachment on a separate page
.
View Attachment As Raw
Actions:
View
Attachments on
bug 1016138
:
808889
|
808890
|
808891
|
808901
|
815564
|
815566
|
832291
|
844575
| 844578