Red Hat Bugzilla – Bug 266401
Spurious message on processing files with no SELinux context
Last modified: 2013-03-01 00:15:58 EST
Description of problem:
When processing a file with no SELinux label, aide prints out the following
lgetfileconv_raw failed for /path/to/file: No data available
Version-Release number of selected component (if applicable):
most recently aide-0.13, also aide-0.12-7
Steps to Reproduce:
1. turn off SELinux
2. create a file, i.e. #touch /root/aide-no-context
3. verify that it has no context by # ls -lZ /root/aide-no-context
4. run #aide -i
lgetfileconv_raw messages - one for every file with no label
no such messages - they are not very descriptive and if running on a system
with lots of unlabeled files, floods the terminal.
Aide up to 0.12-7 (version shipped with RHEL5-GA) used to segfault on
processing files with no context.
aide is working as designed.
selinux as a check item includes reporting when files have no context.
To eliminate these warnings the /etc/aide.conf should be modified to provide alternative for the R L & > groups and change references to them, and also to remove selinux from other group definitions.