Bug 388401
Summary: | selinux prevents xen to start images | ||
---|---|---|---|
Product: | [Fedora] Fedora | Reporter: | Stefan Vogel <stefanfvogel> |
Component: | selinux-policy | Assignee: | Xen Maintainance List <xen-maint> |
Status: | CLOSED CURRENTRELEASE | QA Contact: | Fedora Extras Quality Assurance <extras-qa> |
Severity: | medium | Docs Contact: | |
Priority: | low | ||
Version: | 8 | ||
Target Milestone: | --- | ||
Target Release: | --- | ||
Hardware: | i386 | ||
OS: | Linux | ||
Whiteboard: | |||
Fixed In Version: | Current | Doc Type: | Bug Fix |
Doc Text: | Story Points: | --- | |
Clone Of: | Environment: | ||
Last Closed: | 2008-01-30 19:20:52 UTC | Type: | --- |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: |
Description
Stefan Vogel
2007-11-17 15:52:49 UTC
The complete SELinux Error Report: Source Context: system_u:system_r:xend_t:s0 Target Context: system_u:object_r:xend_var_run_t:s0 Target Objects: None [ dir ] Affected RPM Packages: Policy RPM: selinux-policy-3.0.8-53.fc8 Selinux Enabled: True Policy Type: targeted MLS Enabled: True Enforcing Mode: Enforcing Plugin Name: plugins.catchall_file Host Name: xxxx.xxxxxx.xxx Platform: Linux XXXXXXXX 2.6.21-2950.fc8xen #1 SMP Tue Oct 23 12:24:34 EDT 2007 i686 athlon Alert Count: 4 First Seen: Sat 17 Nov 2007 04:43:20 PM CET Last Seen: Sat 17 Nov 2007 04:54:51 PM CET Local ID: 9ce0ec6b-1608-4c8a-975a-d4fde6729269 Line Numbers: Raw Audit Messages : avc: denied { create } for comm=python egid=0 euid=0 exe=/usr/bin/python exit=-13 fsgid=0 fsuid=0 gid=0 items=0 name=boot pid=30199 scontext=system_u:system_r:xend_t:s0 sgid=0 subj=system_u:system_r:xend_t:s0 suid=0 tclass=dir tcontext=system_u:object_r:xend_var_run_t:s0 tty=(none) uid=0 MMM Maybe this is more selinux related so moved it to selinux. Stefan You can allow this for now by executing # audit2allow -M mypol -i /var/log/audit/audit.log # semodule -i mypol.pp Fixed in selinux-policy-3.0.8-62.fc8 Bulk closing all bugs in Fedora updates in the modified state. If you bug is not fixed, please reopen. |