Summary: | setroubleshoot: SELinux is preventing modem-manager (ModemManager_t) "read" device_t. | ||
---|---|---|---|
Product: | [Fedora] Fedora | Reporter: | Adam Williamson <awilliam> |
Component: | udev | Assignee: | Harald Hoyer <harald> |
Status: | CLOSED INSUFFICIENT_DATA | QA Contact: | Fedora Extras Quality Assurance <extras-qa> |
Severity: | medium | Docs Contact: | |
Priority: | medium | ||
Version: | 12 | CC: | dcbw, dwalsh, harald, mgrepl |
Target Milestone: | --- | Keywords: | Triaged |
Target Release: | --- | ||
Hardware: | x86_64 | ||
OS: | Linux | ||
Whiteboard: | setroubleshoot_trace_hash:ffa5bc0527cf25695a6ba321341089f669190278dcdc0c26ef996d739798aef5 | ||
Fixed In Version: | Doc Type: | Bug Fix | |
Doc Text: | Story Points: | --- | |
Clone Of: | Environment: | ||
Last Closed: | 2010-09-21 09:44:28 UTC | Type: | --- |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Bug Depends On: | |||
Bug Blocks: | 516998 |
Description
Adam Williamson
2009-08-09 20:07:40 UTC
Just plugged in my phone (in mass storage mode, but MM likely doesn't know this). Probably related to NM/MM switching from hal to udev for device detection? -- Fedora Bugzappers volunteer triage team https://fedoraproject.org/wiki/BugZappers Either udev or some udev scripts are creating mislabled files undev /dev/.udev/db/ On my machine I see find /dev/.udev/db/ -type f -printf "%p %Z\n" | grep device_t/dev/.udev/db/\x2fdevices\x2fplatform\x2fhost7\x2fsession3\x2ftarget7:0:0\x2f7:0:0:0\x2fblock\x2fsdb\x2fsdb1 unconfined_u:object_r:device_t:s0 /dev/.udev/db/\x2fdevices\x2fplatform\x2fhost7\x2fsession3\x2ftarget7:0:0\x2f7:0:0:1\x2fblock\x2fsdc\x2fsdc1 unconfined_u:object_r:device_t:s0 /dev/.udev/db/\x2fdevices\x2fplatform\x2fhost7\x2fsession3\x2ftarget7:0:0\x2f7:0:0:4\x2fblock\x2fsdf unconfined_u:object_r:device_t:s0 /dev/.udev/db/\x2fdevices\x2fplatform\x2fhost7\x2fsession3\x2ftarget7:0:0\x2f7:0:0:0\x2fblock\x2fsdb unconfined_u:object_r:device_t:s0 /dev/.udev/db/\x2fdevices\x2fplatform\x2fhost7\x2fsession3\x2ftarget7:0:0\x2f7:0:0:3\x2fblock\x2fsde unconfined_u:object_r:device_t:s0 /dev/.udev/db/\x2fdevices\x2fplatform\x2fhost7\x2fsession3\x2ftarget7:0:0\x2f7:0:0:2\x2fblock\x2fsdd unconfined_u:object_r:device_t:s0 /dev/.udev/db/\x2fdevices\x2fplatform\x2fhost7\x2fsession3\x2ftarget7:0:0\x2f7:0:0:1\x2fblock\x2fsdc unconfined_u:object_r:device_t:s0 /dev/.udev/db/\x2fdevices\x2fpci0000:00\x2f0000:00:02.0\x2fdrm\x2fcard0 unconfined_u:object_r:device_t:s0 /dev/.udev/db/\x2fdevices\x2fpci0000:00\x2f0000:00:1a.7\x2fusb1\x2f1-4 unconfined_u:object_r:device_t:s0 /dev/.udev/db/\x2fdevices\x2fpci0000:00\x2f0000:00:1a.0\x2fusb3\x2f3-1 unconfined_u:object_r:device_t:s0 Odd, all mine are fine here on F11... can you try relabeling and see if, when you plug a modem in, it still gets unconfined_t created on its' device node? as dan walsh (oh lordy, another dan w, it's a conspiracy!) said, it's a udev issue, correctly assigned there - I just mentioned it to you while judging the short-term impact. -- Fedora Bugzappers volunteer triage team https://fedoraproject.org/wiki/BugZappers This bug appears to have been reported against 'rawhide' during the Fedora 12 development cycle. Changing version to '12'. More information and reason for this action is here: http://fedoraproject.org/wiki/BugZappers/HouseKeeping Adam is this still happening for you in RHEL6? I have no idea, I don't have any systems that run RHEL. Ok Does it still happen on F12? I'm on Rawhide now. :) afaict it's not happening there - I'm not entirely sure whether selinux alert notification is working right in Rawhide, but if I tail /var/log/messages and plug in my phone, I don't see any selinux / audit messages. Well we can hope that this has been fixed. Haven't seen anything like this in Fedora for years. No idea about RHEL though. |