Bug 467380 - AVC's when using an iscsi disk (iscsid)
AVC's when using an iscsi disk (iscsid)
Product: Fedora
Classification: Fedora
Component: selinux-policy-targeted (Show other bugs)
All Linux
medium Severity medium
: ---
: ---
Assigned To: Daniel Walsh
Ben Levenson
Depends On:
Blocks: F10Blocker/F10FinalBlocker
  Show dependency treegraph
Reported: 2008-10-17 04:41 EDT by Hans de Goede
Modified: 2008-10-27 10:04 EDT (History)
1 user (show)

See Also:
Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of:
Last Closed: 2008-10-27 10:04:05 EDT
Type: ---
Regression: ---
Mount Type: ---
Documentation: ---
Verified Versions:
Category: ---
oVirt Team: ---
RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: ---

Attachments (Terms of Use)

  None (edit)
Description Hans de Goede 2008-10-17 04:41:14 EDT
Description of problem:
When using an iscsi disk, and thus running iscsid the following avc's are repeatedly entered into dmesg / audit.log:

type=AVC msg=audit(1224228653.374:5): avc:  denied  { search } for  pid=1898 comm="iscsid" name="iscsi" dev=sdc1 ino=468030 scontext=system_u:system_r:iscsid_t:s0 tcontext=system_u:object_r:iscsi_lock_t:s0 tclass=dir
type=SYSCALL msg=audit(1224228653.374:5): arch=40000003 syscall=5 success=no exit=-13 a0=806c66b a1=42 a2=1b6 a3=bfe31390 items=0 ppid=1894 pid=1898 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iscsid" exe="/sbin/iscsid" subj=system_u:system_r:iscsid_t:s0 key=(null)

type=AVC msg=audit(1224229733.361:3010): avc:  denied  { sys_admin } for  pid=1550 comm="iscsid" capability=21 scontext=system_u:system_r:iscsid_t:s0 tcontext=system_u:system_r:iscsid_t:s0 tclass=capability
Comment 1 Daniel Walsh 2008-10-27 10:04:05 EDT
Fixed in selinux-policy-3.5.13-7.fc10

Note You need to log in before you can comment on or make changes to this bug.