Am Mi, den 15.06.2005 schrieb Shahzad Chohan um 15:15: > How do I stop these from popping up on the console. I thought that by > disabling selinux they would stop coming, but I still get them. In > this case all i did was ping www.google.com, then this popped up > > audit(1118840893.580:16511): avc: denied { name_connect } for > pid=1220 comm="ping" dest=111 scontext=root:system_r:unconfined_t > tcontext=system_u:object_r:portmap_port_t tclass=tcp_socket > Shaz Check bugzilla.redhat.com whether a report is there already. If not I think you should fill in a ticket. For FC3 there is a targeted policy update in testing period Mon Jun 13 2005 Dan Walsh <dwalsh@xxxxxxxxxx> 1.17.30-3.9 - Allow unconfined_t full execmod access. and as your audit message too shows "unconfirmed_t" I think it is the same case. But yet I am not really SELinux skilled (as much as I would like to be) ;) Alexander -- Alexander Dalloz | Enger, Germany | GPG http://pgp.mit.edu 0xB366A773 legal statement: http://www.uni-x.org/legal.html Fedora Core 2 GNU/Linux on Athlon with kernel 2.6.11-1.27_FC2smp Serendipity 17:19:18 up 22 days, 15:57, load average: 0.31, 0.21, 0.19
Attachment:
signature.asc
Description: Dies ist ein digital signierter Nachrichtenteil