Bug 1243733 - SELinux is preventing gnome-keyring-d from 'create' accesses on the directory keyring.
Summary: SELinux is preventing gnome-keyring-d from 'create' accesses on the directory...
Keywords:
Status: CLOSED EOL
Alias: None
Product: Fedora
Classification: Fedora
Component: selinux-policy
Version: 22
Hardware: x86_64
OS: Linux
unspecified
unspecified
Target Milestone: ---
Assignee: Miroslav Grepl
QA Contact: Fedora Extras Quality Assurance
URL:
Whiteboard: abrt_hash:06e367084e7a489913aca871e30...
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2015-07-16 07:40 UTC by chase chapman
Modified: 2016-07-19 15:22 UTC (History)
5 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed: 2016-07-19 15:22:47 UTC
Type: ---
Embargoed:


Attachments (Terms of Use)

Description chase chapman 2015-07-16 07:40:41 UTC
Description of problem:
a little new at linux so i dont know whats actually going on but i can tell you this after installing linux i get to a part where i first sign in after the installation and my computer lags hardcore extremely bad i cant barely move my mouse and click on my account but once i finally manage to do that i sign in and everything is crystal smooth i have high performance hardware so thats not why it lags like that. also another reason could be a file that failed i tried installing it is called winehq. thats all the information i have.
SELinux is preventing gnome-keyring-d from 'create' accesses on the directory keyring.

*****  Plugin catchall (100. confidence) suggests   **************************

If you believe that gnome-keyring-d should be allowed create access on the keyring directory by default.
Then you should report this as a bug.
You can generate a local policy module to allow this access.
Do
allow this access for now by executing:
# grep gnome-keyring-d /var/log/audit/audit.log | audit2allow -M mypol
# semodule -i mypol.pp

Additional Information:
Source Context                unconfined_u:unconfined_r:passwd_t:s0-s0:c0.c1023
Target Context                unconfined_u:object_r:user_tmp_t:s0
Target Objects                keyring [ dir ]
Source                        gnome-keyring-d
Source Path                   gnome-keyring-d
Port                          <Unknown>
Host                          (removed)
Source RPM Packages           
Target RPM Packages           
Policy RPM                    selinux-policy-3.13.1-128.4.fc22.noarch
Selinux Enabled               True
Policy Type                   targeted
Enforcing Mode                Enforcing
Host Name                     (removed)
Platform                      Linux (removed) 4.0.4-301.fc22.x86_64 #1 SMP Thu
                              May 21 13:10:33 UTC 2015 x86_64 x86_64
Alert Count                   1
First Seen                    2015-07-16 02:29:50 CDT
Last Seen                     2015-07-16 02:29:50 CDT
Local ID                      551a9870-bf1c-4917-b045-2000fbc3539c

Raw Audit Messages
type=AVC msg=audit(1437031790.553:1536): avc:  denied  { create } for  pid=21848 comm="gnome-keyring-d" name="keyring" scontext=unconfined_u:unconfined_r:passwd_t:s0-s0:c0.c1023 tcontext=unconfined_u:object_r:user_tmp_t:s0 tclass=dir permissive=0


Hash: gnome-keyring-d,passwd_t,user_tmp_t,dir,create

Version-Release number of selected component:
selinux-policy-3.13.1-128.4.fc22.noarch

Additional info:
reporter:       libreport-2.6.0
hashmarkername: setroubleshoot
kernel:         4.0.4-301.fc22.x86_64
type:           libreport

Comment 1 chase chapman 2015-07-16 07:43:50 UTC
i sent this at almost 3 in the morning so just reread it a couple times if needed

Comment 2 chase chapman 2015-07-16 07:45:35 UTC
(In reply to chase chapman from comment #0)
> Description of problem:
> a little new at linux so i dont know whats actually going on but i can tell
> you this after installing linux i get to a part where i first sign in after
> the installation and my computer lags hardcore extremely bad i can barely
> move my mouse and click on my account but once i finally manage to do that i
> sign in and everything is crystal smooth i have high performance hardware so
> thats not why it lags like that. also another reason could be a file that
> failed i tried installing it is called winehq. thats all the information i
> have.
> SELinux is preventing gnome-keyring-d from 'create' accesses on the
> directory keyring.
> 
> *****  Plugin catchall (100. confidence) suggests  
> **************************
> 
> If you believe that gnome-keyring-d should be allowed create access on the
> keyring directory by default.
> Then you should report this as a bug.
> You can generate a local policy module to allow this access.
> Do
> allow this access for now by executing:
> # grep gnome-keyring-d /var/log/audit/audit.log | audit2allow -M mypol
> # semodule -i mypol.pp
> 
> Additional Information:
> Source Context               
> unconfined_u:unconfined_r:passwd_t:s0-s0:c0.c1023
> Target Context                unconfined_u:object_r:user_tmp_t:s0
> Target Objects                keyring [ dir ]
> Source                        gnome-keyring-d
> Source Path                   gnome-keyring-d
> Port                          <Unknown>
> Host                          (removed)
> Source RPM Packages           
> Target RPM Packages           
> Policy RPM                    selinux-policy-3.13.1-128.4.fc22.noarch
> Selinux Enabled               True
> Policy Type                   targeted
> Enforcing Mode                Enforcing
> Host Name                     (removed)
> Platform                      Linux (removed) 4.0.4-301.fc22.x86_64 #1 SMP
> Thu
>                               May 21 13:10:33 UTC 2015 x86_64 x86_64
> Alert Count                   1
> First Seen                    2015-07-16 02:29:50 CDT
> Last Seen                     2015-07-16 02:29:50 CDT
> Local ID                      551a9870-bf1c-4917-b045-2000fbc3539c
> 
> Raw Audit Messages
> type=AVC msg=audit(1437031790.553:1536): avc:  denied  { create } for 
> pid=21848 comm="gnome-keyring-d" name="keyring"
> scontext=unconfined_u:unconfined_r:passwd_t:s0-s0:c0.c1023
> tcontext=unconfined_u:object_r:user_tmp_t:s0 tclass=dir permissive=0
> 
> 
> Hash: gnome-keyring-d,passwd_t,user_tmp_t,dir,create
> 
> Version-Release number of selected component:
> selinux-policy-3.13.1-128.4.fc22.noarch
> 
> Additional info:
> reporter:       libreport-2.6.0
> hashmarkername: setroubleshoot
> kernel:         4.0.4-301.fc22.x86_64
> type:           libreport

Comment 3 Fedora End Of Life 2016-07-19 15:22:47 UTC
Fedora 22 changed to end-of-life (EOL) status on 2016-07-19. Fedora 22 is
no longer maintained, which means that it will not receive any further
security or bug fix updates. As a result we are closing this bug.

If you can reproduce this bug against a currently maintained version of
Fedora please feel free to reopen this bug against that version. If you
are unable to reopen this bug, please file a new report against the
current release. If you experience problems, please add a comment to this
bug.

Thank you for reporting this bug and we are sorry it could not be fixed.


Note You need to log in before you can comment on or make changes to this bug.