Description of problem: Setroubleshooter reports a problem with ntpdate doing a pipefs write in the context of firstboot. It requests that a bug report be filed. Version-Release number of selected component (if applicable): ntp-4.2.4p0-1.fc7 selinux-policy-targeted-2.5.8-5.fc7 How reproducible: unknown Steps to Reproduce: 1. rawhide install of 2007-03-16 2. configure ntp "sync before starting" 3. Actual results: AVC message: avc: denied { write } for comm="ntpdate" dev=pipefs egid=0 euid=0 exe="/usr/sbin/ntpdate" exit=0 fsgid=0 fsuid=0 gid=0 items=0 name="[8959]" path="pipe:[8959]" pid=2277 scontext=system_u:system_r:ntpd_t:s0 sgid=0 subj=system_u:system_r:ntpd_t:s0 suid=0 tclass=fifo_file tcontext=system_u:system_r:firstboot_t:s0 tty=(none) uid=0 Expected results: Additional info: setroubleshooter alert attached
Created attachment 150299 [details] setroubleshooter alert
Fixed in selinux-policy-2.5.9-1
seems to be gone, but will test more when I can get a rawhide install done later today.
definitely gone.