Description of problem: As root, I am trying to run "seuser -X" and get lots of TCL errors. However, these disappear when "setenforce 0" so it must be the policies. Here are entries from /var/log/messages Apr 3 13:19:28 hummer kernel: audit(1081016368.933:0): avc: denied { read } for pid=3317 exe=/usr/bin/seuserx name=iso8859-1.enc dev=hda10 ino=702146 scontext=root:sysadm_r:seuser_t tcontext=system_u:object_r:usr_t tclass=file Apr 3 13:19:28 hummer kernel: audit(1081016368.934:0): avc: denied { getattr } for pid=3317 exe=/usr/bin/seuserx path=/usr/share/tcl8.4/init.tcl dev=hda10 ino=702188 scontext=root:sysadm_r:seuser_t tcontext=system_u:object_r:usr_t tclass=file Apr 3 13:19:28 hummer kernel: audit(1081016368.935:0): avc: denied { getattr } for pid=3317 exe=/usr/bin/seuserx path=/usr/share/tcl8.4/init.tcl dev=hda10 ino=702188 scontext=root:sysadm_r:seuser_t tcontext=system_u:object_r:usr_t tclass=file
fixed in setools-1.2.1-4