Fedora Account System
Red Hat Associate
Red Hat Customer
Résumé: SELinux is preventing ps (mysqld_safe_t) "search" sysctl_kernel_t. Description détaillée: [ps a un type permissif (mysqld_safe_t). Cet accès n'a pas été refusé.] SELinux denied access requested by ps. It is not expected that this access is required by ps and this access may signal an intrusion attempt. It is also possible that the specific version or configuration of the application is causing it to require additional access. Autoriser l'accès: You can generate a local policy module to allow this access - see FAQ (http://fedora.redhat.com/docs/selinux-faq-fc5/#id2961385) Or you can disable SELinux protection altogether. Disabling SELinux protection is not recommended. Please file a bug report (http://bugzilla.redhat.com/bugzilla/enter_bug.cgi) against this package. Informations complémentaires: Contexte source unconfined_u:system_r:mysqld_safe_t:s0 Contexte cible system_u:object_r:sysctl_kernel_t:s0 Objets du contexte None [ dir ] source ps Chemin de la source /bin/ps Port <Inconnu> Hôte (removed) Paquetages RPM source procps-3.2.7-27.fc11 Paquetages RPM cible Politique RPM selinux-policy-3.6.12-39.fc11 Selinux activé True Type de politique targeted Mode strict Enforcing Nom du plugin catchall Nom de l'hôte (removed) Plateforme Linux (removed) 2.6.29.4-167.fc11.x86_64 #1 SMP Wed May 27 17:27:08 EDT 2009 x86_64 x86_64 Compteur d'alertes 2 Première alerte lun. 15 juin 2009 11:54:56 CEST Dernière alerte lun. 15 juin 2009 11:54:56 CEST ID local 48c9293f-528e-4ea1-a3a5-8405767ddb30 Numéros des lignes Messages d'audit bruts node=(removed) type=AVC msg=audit(1245059696.508:23623): avc: denied { search } for pid=6585 comm="ps" scontext=unconfined_u:system_r:mysqld_safe_t:s0 tcontext=system_u:object_r:sysctl_kernel_t:s0 tclass=dir node=(removed) type=AVC msg=audit(1245059696.508:23623): avc: denied { read } for pid=6585 comm="ps" scontext=unconfined_u:system_r:mysqld_safe_t:s0 tcontext=system_u:object_r:sysctl_kernel_t:s0 tclass=file node=(removed) type=SYSCALL msg=audit(1245059696.508:23623): arch=c000003e syscall=2 success=yes exit=3 a0=3a43a0be79 a1=0 a2=3a43969e80 a3=30 items=0 ppid=6515 pid=6585 auid=500 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts1 ses=1 comm="ps" exe="/bin/ps" subj=unconfined_u:system_r:mysqld_safe_t:s0 key=(null) Hash String generated from selinux-policy-3.6.12-39.fc11,catchall,ps,mysqld_safe_t,sysctl_kernel_t,dir,search audit2allow suggests: #============= mysqld_safe_t ============== #!!!! This avc is allowed in the current policy allow mysqld_safe_t sysctl_kernel_t:dir search; #!!!! This avc is allowed in the current policy allow mysqld_safe_t sysctl_kernel_t:file read;
*** This bug has been marked as a duplicate of bug 560762 ***