Bug 906968 - Probable kernel issue creating net_admin avc issues
Summary: Probable kernel issue creating net_admin avc issues
Keywords:
Status: CLOSED CURRENTRELEASE
Alias: None
Product: Fedora
Classification: Fedora
Component: kernel
Version: 18
Hardware: x86_64
OS: Linux
unspecified
medium
Target Milestone: ---
Assignee: Eric Paris
QA Contact: Fedora Extras Quality Assurance
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2013-02-02 03:54 UTC by David Highley
Modified: 2013-05-17 13:37 UTC (History)
7 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed: 2013-05-17 13:37:48 UTC
Type: Bug
Embargoed:


Attachments (Terms of Use)
Capture of associated avc audit log entries. (582.17 KB, text/x-log)
2013-02-02 03:54 UTC, David Highley
no flags Details

Description David Highley 2013-02-02 03:54:15 UTC
Created attachment 691869 [details]
Capture of associated avc audit log entries.

Description of problem:
Selinux is reporting net_admin avc issues for several things.

Version-Release number of selected component (if applicable):
3.7.4-204.fc18.x86_64 and now with the latest kernel update to Fedora 16 3.6.11-4.fc16.x86_64

How reproducible:
Lots of them occur during logwatch, email, and automount login processes.

Steps to Reproduce:
1.
2.
3.
  
Actual results:


Expected results:


Additional info:
We have had to create local policy files for; abrt, automount, mount, logrotate, procmail, rsync, sendmail, system_mail, and setroubleshootd. Looks like in reviewing the log that rpm is also involved but we did not end up needing to create any local policy to elminate the avc reports.

Comment 1 David Highley 2013-02-16 03:10:52 UTC
Reported this issue against a system we had done a fedup upgrade from Fedora 17. We have now done a fresh install and do not see this issue on the Fedora 18 system at least with kernel version 3.7.6-201.fc18.x86_64. We first noticed the issue with Fedora 17 and then with Fedora 16 as noted above after a kernel upgrade.


Note You need to log in before you can comment on or make changes to this bug.