Bug 119769 - cannot run as user
Summary: cannot run as user
Alias: None
Product: Fedora
Classification: Fedora
Component: usermode   
(Show other bugs)
Version: rawhide
Hardware: All Linux
Target Milestone: ---
Assignee: Jindrich Novy
QA Contact: David Lawrence
: 119602 119858 (view as bug list)
Depends On:
TreeView+ depends on / blocked
Reported: 2004-04-02 01:27 UTC by Scott Sloan
Modified: 2013-07-02 22:59 UTC (History)
6 users (show)

Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of:
Last Closed: 2004-11-30 19:11:33 UTC
Type: ---
Regression: ---
Mount Type: ---
Documentation: ---
Verified Versions:
Category: ---
oVirt Team: ---
RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: ---

Attachments (Terms of Use)
strace output (349.64 KB, text/plain)
2004-04-02 08:55 UTC, Scott Sloan
no flags Details

Description Scott Sloan 2004-04-02 01:27:11 UTC
Description of problem:

[scott@localhost scott]$ system-logviewer
Could not set exec context to user_u:sysadm_r:sysadm_t.
[scott@localhost scott]$ su
[root@localhost scott]# sysetm-logviewer
bash: sysetm-logviewer: command not found
[root@localhost scott]# system-logviewer
/usr/share/system-logviewer/LogFileFrame.py:121: DeprecationWarning:
but we use it for a constructor for convenience
  self.searchEntry = gtk.Entry()
[root@localhost scott]#

This happens with all system-*

How reproducible:

every time

Steps to Reproduce:
1. from user, try and launch and of the system- programs
2. type in root password
3. they die
Actual results:

program is killed

Expected results:

program should launch

Additional info:

if this is not a bug then all system programs should be removed from
the user menu. what is the point of the user seeing them if they can't
not run them even if they know the root password

Comment 1 Scott Sloan 2004-04-02 08:55:08 UTC
Created attachment 99071 [details]
strace output

Comment 2 Tammy Fox 2004-04-02 16:03:05 UTC
This looks like it might be a symptom of SELinux. Please disable
SELinux with the setenforce 0 command as described at
http://people.redhat.com/kwade/fedora-docs/selinux-faq-en/, try to run
system-logviewer as a user again, and let me know what happens.

Comment 3 Scott Sloan 2004-04-02 16:35:18 UTC
With Setting: 



I can start system-* succssfully, so you're right Tammy in that this
is a direct symptom of selinux. 

Comment 4 Tammy Fox 2004-04-02 16:51:49 UTC
After further investigation, it looks like userhelper is dumping out
the  Could not set exec context to user_u:sysadm_r:sysadm_t error message.

I am changing the component to usermode.

Comment 5 Tim Waugh 2004-04-04 14:19:07 UTC
FWIW, this works for users created with 'useradd' (i.e. with
sysadm_r), but not with seuser add -R user_r (i.e. with user_r).

[tim@tornado tim]$ id -Z
[tim@tornado tim]$ gdmsetup
Could not set exec context to tim:sysadm_r:sysadm_t.

[foo@tornado foo]$ id -Z
[foo@tornado foo]$ gdmsetup
[asks for password, then works]

Comment 6 Bill Nottingham 2004-04-05 21:42:39 UTC
*** Bug 119602 has been marked as a duplicate of this bug. ***

Comment 7 Bill Nottingham 2004-04-05 21:42:46 UTC
*** Bug 119858 has been marked as a duplicate of this bug. ***

Comment 8 Daniel Walsh 2004-11-30 19:11:33 UTC
Current policy fixes this problem

Note You need to log in before you can comment on or make changes to this bug.