Bug 467380 - AVC's when using an iscsi disk (iscsid)
Summary: AVC's when using an iscsi disk (iscsid)
Keywords:
Status: CLOSED RAWHIDE
Alias: None
Product: Fedora
Classification: Fedora
Component: selinux-policy-targeted
Version: rawhide
Hardware: All
OS: Linux
medium
medium
Target Milestone: ---
Assignee: Daniel Walsh
QA Contact: Ben Levenson
URL:
Whiteboard:
Depends On:
Blocks: F10Blocker, F10FinalBlocker
TreeView+ depends on / blocked
 
Reported: 2008-10-17 08:41 UTC by Hans de Goede
Modified: 2008-10-27 14:04 UTC (History)
1 user (show)

Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Clone Of:
Environment:
Last Closed: 2008-10-27 14:04:05 UTC
Type: ---
Embargoed:


Attachments (Terms of Use)

Description Hans de Goede 2008-10-17 08:41:14 UTC
Description of problem:
When using an iscsi disk, and thus running iscsid the following avc's are repeatedly entered into dmesg / audit.log:

type=AVC msg=audit(1224228653.374:5): avc:  denied  { search } for  pid=1898 comm="iscsid" name="iscsi" dev=sdc1 ino=468030 scontext=system_u:system_r:iscsid_t:s0 tcontext=system_u:object_r:iscsi_lock_t:s0 tclass=dir
type=SYSCALL msg=audit(1224228653.374:5): arch=40000003 syscall=5 success=no exit=-13 a0=806c66b a1=42 a2=1b6 a3=bfe31390 items=0 ppid=1894 pid=1898 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iscsid" exe="/sbin/iscsid" subj=system_u:system_r:iscsid_t:s0 key=(null)


type=AVC msg=audit(1224229733.361:3010): avc:  denied  { sys_admin } for  pid=1550 comm="iscsid" capability=21 scontext=system_u:system_r:iscsid_t:s0 tcontext=system_u:system_r:iscsid_t:s0 tclass=capability

Comment 1 Daniel Walsh 2008-10-27 14:04:05 UTC
Fixed in selinux-policy-3.5.13-7.fc10


Note You need to log in before you can comment on or make changes to this bug.