Bug 735029

Summary: avc denial during using cimconfig
Product: Red Hat Enterprise Linux 6 Reporter: Petr Sklenar <psklenar>
Component: selinux-policyAssignee: Miroslav Grepl <mgrepl>
Status: CLOSED DUPLICATE QA Contact: Milos Malik <mmalik>
Severity: medium Docs Contact:
Priority: medium    
Version: 6.2CC: dwalsh, mgrepl, mmalik, ovasik
Target Milestone: rcKeywords: Regression, SELinux
Target Release: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Fixed In Version: Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2011-09-05 06:34:38 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:

Description Petr Sklenar 2011-09-01 08:36:36 UTC
Description of problem:
avc denial during using cimconfig.

Version-Release number of selected component (if applicable):
tog-pegasus-2.11.0-2.el6.i686 

selinux-policy-3.7.19-108.el6.noarch
libselinux-devel-2.0.94-5.el6.i686
libselinux-2.0.94-5.el6.i686
selinux-policy-targeted-3.7.19-108.el6.noarch
libselinux-utils-2.0.94-5.el6.i686

How reproducible:
deterministic

Steps to Reproduce:
# cimconfig -u shutdownTimeout -p
Failed to unset the config property.CIM_ERR_FAILED: Failed to save
configuration properties to file: cannot rename file:
/etc/Pegasus/cimserver_planned.conf. Configuration property not set

type=AVC msg=audit(1314864301.329:244886): avc:  denied  { rename } for 
pid=12475 comm="cimserver" name="cimserver_planned.conf" dev=dm-0 ino=132074
scontext=unconfined_u:system_r:pegasus_t:s0
tcontext=system_u:object_r:pegasus_conf_t:s0 tclass=file
  
Actual results:
avc denial

Expected results:
no denial

Additional info:

Comment 2 Miroslav Grepl 2011-09-05 06:34:38 UTC
Should be fixed in the latest RHEL6 policy.

*** This bug has been marked as a duplicate of bug 723977 ***