Login
Log in using an SSO provider:
Fedora Account System
Red Hat Associate
Red Hat Customer
Login using a Red Hat Bugzilla account
Forgot Password
Create an Account
Red Hat Bugzilla – Attachment 987255 Details for
Bug 1098802
SELinux alerts starting and running couchdb
Home
New
Search
Simple Search
Advanced Search
My Links
Browse
Requests
Reports
Current State
Search
Tabular reports
Graphical reports
Duplicates
Other Reports
User Changes
Plotly Reports
Bug Status
Bug Severity
Non-Defaults
Product Dashboard
Help
Page Help!
Bug Writing Guidelines
What's new
Browser Support Policy
5.0.4.rh92 Release notes
FAQ
Guides index
User guide
Web Services
Contact
Legal
[?]
This site requires JavaScript to be enabled to function correctly, please enable it.
Details from SETroubleshoot
selinux_details_output.txt (text/plain), 2.15 KB, created by
Ingo Weiss
on 2015-02-02 20:40:51 UTC
(
hide
)
Description:
Details from SETroubleshoot
Filename:
MIME Type:
Creator:
Ingo Weiss
Created:
2015-02-02 20:40:51 UTC
Size:
2.15 KB
patch
obsolete
>SELinux is preventing /usr/bin/df from getattr access on the blk_file /dev/dm-0. > >***** Plugin catchall (100. confidence) suggests ************************** > >If you believe that df should be allowed getattr access on the dm-0 blk_file by default. >Then you should report this as a bug. >You can generate a local policy module to allow this access. >Do >allow this access for now by executing: ># grep df /var/log/audit/audit.log | audit2allow -M mypol ># semodule -i mypol.pp > >Additional Information: >Source Context system_u:system_r:couchdb_t:s0 >Target Context system_u:object_r:fixed_disk_device_t:s0 >Target Objects /dev/dm-0 [ blk_file ] >Source df >Source Path /usr/bin/df >Port <Unknown> >Host iweiss-x201 >Source RPM Packages coreutils-8.22-19.fc21.x86_64 >Target RPM Packages >Policy RPM selinux-policy-3.13.1-105.1.fc21.noarch >Selinux Enabled True >Policy Type targeted >Enforcing Mode Permissive >Host Name iweiss-x201 >Platform Linux iweiss-x201 3.18.4-200.fc21.x86_64 #1 SMP > Tue Jan 27 18:27:18 UTC 2015 x86_64 x86_64 >Alert Count 4 >First Seen 2015-02-02 18:55:56 GMT >Last Seen 2015-02-02 20:25:03 GMT >Local ID 99ff484b-f654-4e7f-9c1c-333795a4a0ac > >Raw Audit Messages >type=AVC msg=audit(1422908703.457:3050): avc: denied { getattr } for pid=29650 comm="df" path="/dev/dm-0" dev="devtmpfs" ino=8851 scontext=system_u:system_r:couchdb_t:s0 tcontext=system_u:object_r:fixed_disk_device_t:s0 tclass=blk_file permissive=1 > > >type=SYSCALL msg=audit(1422908703.457:3050): arch=x86_64 syscall=lstat success=yes exit=0 a0=22a0950 a1=7fffbb4b5ff0 a2=7fffbb4b5ff0 a3=7c0 items=0 ppid=5647 pid=29650 auid=4294967295 uid=975 gid=974 euid=975 suid=975 fsuid=975 egid=974 sgid=974 fsgid=974 tty=(none) ses=4294967295 comm=df exe=/usr/bin/df subj=system_u:system_r:couchdb_t:s0 key=(null) > >Hash: df,couchdb_t,fixed_disk_device_t,blk_file,getattr
You cannot view the attachment while viewing its details because your browser does not support IFRAMEs.
View the attachment on a separate page
.
View Attachment As Raw
Actions:
View
Attachments on
bug 1098802
:
896832
| 987255 |
987256