On Tuesday August 01 2006 11:08 pm, Claude Jones wrote: > > Look in /var/log/messages for SELinux AVC denials since the "setenforce" > > was done. Post what you get. I'm reading the Fedora Selinux docs and saw this "File context are stored with the Inode in an extended attribute on systems that support extended attributes. This works the same way as DAC Protections and ACL's. In that the security of the file is based information stored at the Inode not the path to the file." Looking at /var/log/messages I notice that I'm getting a ton of these: Aug 1 23:08:42 tehogee kernel: inode_doinit_with_dentry: context_to_sid(user_u:object_r:unconfined_var_tmp_t) returned 22 for dev=dm-0 ino=9527355 Aug 1 23:08:42 tehogee kernel: inode_doinit_with_dentry: context_to_sid(user_u:object_r:unconfined_var_tmp_t) returned 22 for dev=dm-0 ino=9528591 Aug 1 23:08:42 tehogee kernel: inode_doinit_with_dentry: context_to_sid(user_u:object_r:unconfined_var_tmp_t) returned 22 for dev=dm-0 ino=9528590 Aug 1 23:08:42 tehogee kernel: inode_doinit_with_dentry: context_to_sid(user_u:object_r:unconfined_var_tmp_t) returned 22 for dev=dm-0 ino=9528592 Aug 1 23:08:42 tehogee kernel: inode_doinit_with_dentry: context_to_sid(user_u:object_r:unconfined_var_tmp_t) returned 22 for dev=dm-0 ino=9528588 Aug 1 23:08:42 tehogee kernel: inode_doinit_with_dentry: context_to_sid(user_u:object_r:unconfined_var_tmp_t) returned 22 for dev=dm-0 ino=952858 There are over a hundred of these over the course of the day, including a bunch since I tried to run those programs. I don't know the relevance, but, I post them in case... -- Claude Jones Brunswick, MD, USA