Bug 784444
Summary: | Logging in with gnome-shell with a brand new user fails | ||||||
---|---|---|---|---|---|---|---|
Product: | [Fedora] Fedora | Reporter: | Simo Sorce <ssorce> | ||||
Component: | oddjob | Assignee: | Nalin Dahyabhai <nalin> | ||||
Status: | CLOSED DUPLICATE | QA Contact: | Fedora Extras Quality Assurance <extras-qa> | ||||
Severity: | unspecified | Docs Contact: | |||||
Priority: | unspecified | ||||||
Version: | 16 | CC: | dominick.grift, dwalsh, mgrepl, nalin | ||||
Target Milestone: | --- | ||||||
Target Release: | --- | ||||||
Hardware: | Unspecified | ||||||
OS: | Unspecified | ||||||
Whiteboard: | |||||||
Fixed In Version: | Doc Type: | Bug Fix | |||||
Doc Text: | Story Points: | --- | |||||
Clone Of: | Environment: | ||||||
Last Closed: | 2012-01-26 20:48:52 UTC | Type: | --- | ||||
Regression: | --- | Mount Type: | --- | ||||
Documentation: | --- | CRM: | |||||
Verified Versions: | Category: | --- | |||||
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |||||
Cloudforms Team: | --- | Target Upstream Version: | |||||
Embargoed: | |||||||
Attachments: |
|
Description
Simo Sorce
2012-01-24 23:36:17 UTC
Ok, could you repeat these steps for a new user and try to log in in permissive mode and look for AVC msgs # ausearch -m avc -ts recent we should see what is mislabeled. Seems like it could be an odd job problem. Nalin doesn't oddjob do labeling on the files it creates? What's the path to the user's home directory? The path is /home/<name> The fact is that there is *some* labeling, but apprently deep down in .local or similar something is not labeled correctly or does not give gnome-shell (or whetever proxy program) proper access. Once I restorecon -R all is fine. The full output of 'retorecon -R -v $HOME' would be useful here. Created attachment 557718 [details]
Output of restorecon obtained with script
Ok had to use script because redirecting restorecon (or using the -o option) seem not working ...
Your home directory appears to have been labeled as type "home_root_t", which is the default label on /home, which suggests that whatever created your home directory just left the default labeling in place. That really sounds like what would happen if you were using the regular pam_mkhomedir.so. Can you double-check your PAM configuration to ensure that that's not what's happening here? You are .... correct. I can swear I saw oddjob there ... now the question is why authconfig --enablemkhomedir sets up pam_mkhomdir which is obviously not going to work and does not set up oddjob ? Maybe should reassign this bug to authconfig ? (In reply to comment #8) > now the question is why authconfig --enablemkhomedir sets up pam_mkhomdir which > is obviously not going to work and does not set up oddjob ? > > Maybe should reassign this bug to authconfig ? See bug #647589, I guess. *** This bug has been marked as a duplicate of bug 647589 *** |