Bug 453946

Summary: NetworkManager triggers AVC denial on suspend
Product: Red Hat Enterprise Linux 5 Reporter: Gunnar Hellekson <ghelleks>
Component: selinux-policy-targetedAssignee: Daniel Walsh <dwalsh>
Status: CLOSED CURRENTRELEASE QA Contact:
Severity: low Docs Contact:
Priority: low    
Version: 5.1CC: dwalsh
Target Milestone: rc   
Target Release: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Fixed In Version: u2 Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2008-07-03 15:27:21 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Attachments:
Description Flags
setroubleshoot output none

Description Gunnar Hellekson 2008-07-03 12:56:45 UTC
Description of problem:

After recovering from a suspend, an AVC denial prevents NetworkManager from
writing to /var/log/suspend.log.

Version-Release number of selected component (if applicable):

RHEL 5.1
selinux-policy-targeted-2.4.6-106.el5_1.3
NetworkManager-0.6.4-6.el5
NetworkManager-vpnc-0.6.4-3.el5
NetworkManager-glib-0.6.4-6.el5
NetworkManager-gnome-0.6.4-6.el5

How reproducible:

100%

Steps to Reproduce:
1. Have networkmanager handle your networking, with SELinux enforcing.
2. Suspend the system from the System menu
3. Hit the power button to resume the system
4. Behold AVC denials

Additional info:

setroubleshoot messages attached.

Comment 1 Gunnar Hellekson 2008-07-03 12:56:45 UTC
Created attachment 310922 [details]
setroubleshoot output

Comment 2 Daniel Walsh 2008-07-03 15:27:21 UTC
Please update to the U2 policy.