Bug 604913
Summary: | SELinux is preventing /usr/bin/Xephyr "name_bind" access . | ||
---|---|---|---|
Product: | [Fedora] Fedora | Reporter: | Josh <jokajak> |
Component: | selinux-policy | Assignee: | Daniel Walsh <dwalsh> |
Status: | CLOSED INSUFFICIENT_DATA | QA Contact: | Fedora Extras Quality Assurance <extras-qa> |
Severity: | medium | Docs Contact: | |
Priority: | medium | ||
Version: | 13 | CC: | dwalsh, mgrepl |
Target Milestone: | --- | ||
Target Release: | --- | ||
Hardware: | i386 | ||
OS: | Linux | ||
Whiteboard: | setroubleshoot_trace_hash:3765aa7ba69d1af52146fb83a002c141c04d51d7d7be7e5877f51d1e9b2eb848 | ||
Fixed In Version: | Doc Type: | Bug Fix | |
Doc Text: | Story Points: | --- | |
Clone Of: | Environment: | ||
Last Closed: | 2010-08-19 10:07:31 UTC | Type: | --- |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: |
Description
Josh
2010-06-17 01:26:16 UTC
How did you get this to happen? Why is your X server using port 6081 or 6082? Does $ sandbox -X -H ~/dir/home -T ~/dir/tmp -t sandbox_web_t firefox Work. It works the first time but doesn't work the second time. IE: $ rm -rf ~/dir $ mkdir -p ~/dir/{home,tmp} $ sandbox -X -H ~/dir/home -T ~/dir/tmp -t sandbox_web_t firefox # works < quit firefox > $ sandbox -X -H ~/dir/home -T ~/dir/tmp -t sandbox_web_t firefox # doesn't work additionally, the second sandbox just hangs there. If I send it a ctrl+c it returns me to a prompt but the sandbox process is still running and has to be killed via its pid. Specifying the level that is what the files are labeled doesn't work due to a bug in __setup_dir that returns from the function before defining self.__homedir and self.__tmpdir. Even after fixing that bug it still does not work. (In reply to comment #3) > It works the first time but doesn't work the second time. IE: > > $ rm -rf ~/dir > $ mkdir -p ~/dir/{home,tmp} > $ sandbox -X -H ~/dir/home -T ~/dir/tmp -t sandbox_web_t firefox # works > < quit firefox > > $ sandbox -X -H ~/dir/home -T ~/dir/tmp -t sandbox_web_t firefox # doesn't work > > additionally, the second sandbox just hangs there. If I send it a ctrl+c it > returns me to a prompt but the sandbox process is still running and has to be > killed via its pid. > > Specifying the level that is what the files are labeled doesn't work due to a > bug in __setup_dir that returns from the function before defining > self.__homedir and self.__tmpdir. Even after fixing that bug it still does not > work. Correction, it does fix it. It seems the problem is that the chcon isn't properly relabeling all of the files. -josh Josh killall restorecond And then try it. restorecond is not running, still doesn't work i think the chcon isn't working for some reason Sorry dropped this one. ps -eZ | grep restorecon Are you sure. A restorecond user daemon starts at login. |