F30 logwatch gets selinux error

2019-08-21 Thread Robert Moskowitz
I get this error every few days.  Is this some permission I have not set or a bug to report: SELinux is preventing mkdir from using the dac_override capability. *  Plugin dac_override (91.4 confidence) suggests ** If you want to help identify if domain needs this access

Re: SElinux error

2018-11-24 Thread Kai Bojens
Am 2018-11-11 20:28, schrieb Paolo Galtieri: SELinux is preventing 72733A6D61696E20513A526567 from using the dac_override capability. Anyone know what this refers to? Please try the following: sealert -a /var/log/audit/audit.log ___ users mailing

Re: SElinux error

2018-11-11 Thread Paolo Galtieri
The issue is normally the SElinux alert gives me the name of the process causing the problem, not a long string of characters. Paolo On 11/11/18 12:43 PM, Joe Zeff wrote: On 11/11/2018 12:28 PM, Paolo Galtieri wrote: Folks,    I got the fllowing SElinux error today: SELinux is preventing

Re: SElinux error

2018-11-11 Thread Andy Paterson via users
Dac is selinux discretionary access control > On 11 Nov 2018, at 20:04, stan wrote: > > On Sun, 11 Nov 2018 11:28:44 -0800 > Paolo Galtieri wrote: > >> Folks, >> I got the fllowing SElinux error today: >> >> SELinux is preventing 72733A6D61696E20513

Re: SElinux error

2018-11-11 Thread Joe Zeff
On 11/11/2018 12:28 PM, Paolo Galtieri wrote: Folks,   I got the fllowing SElinux error today: SELinux is preventing 72733A6D61696E20513A526567 from using the dac_override capability. Anyone know what this refers to? Are you getting this through sealert, the SELinux trouble shooter? If

Re: SElinux error

2018-11-11 Thread stan
On Sun, 11 Nov 2018 11:28:44 -0800 Paolo Galtieri wrote: > Folks, >   I got the fllowing SElinux error today: > > SELinux is preventing 72733A6D61696E20513A526567 from using the > dac_override capability. > > Anyone know what this refers to? dac usually means digital

SElinux error

2018-11-11 Thread Paolo Galtieri
Folks,   I got the fllowing SElinux error today: SELinux is preventing 72733A6D61696E20513A526567 from using the dac_override capability. Anyone know what this refers to? Thanks, Paolo ___ users mailing list -- users@lists.fedoraproject.org To

Re: new SELinux error

2014-03-28 Thread Daniel J Walsh
ausearch -m avc,user_avc -i Or just attach the full output of the sealert command. The AVC's are at the bottom. -- users mailing list users@lists.fedoraproject.org To unsubscribe or change subscription options: https://admin.fedoraproject.org/mailman/listinfo/users Fedora Code of Conduct: http:

Re: new SELinux error

2014-03-28 Thread Paul Cartwright
On 03/27/2014 08:27 PM, Ed Greshko wrote: >>> What was the AVC that you got? >>> >> On 03/27/2014 04:58 PM, Paul Cartwright wrote: >> > Not sure exactly how to check. /var/log/secure has lots of entries.. I >> > didn't write down the error message and the window is gone. where do I >> > look ? >> >

Re: new SELinux error

2014-03-27 Thread Paul Cartwright
>>> Not sure exactly how to check. /var/log/secure has lots of entries.. I >>> didn't write down the error message and the window is gone. where do I >>> look ? >>> >> The AVC would be found in /var/log/audit/audit.log > "SELinux Troubleshooter" > Troubleshoot SELinux access denials > /usr/bin/se

Re: new SELinux error

2014-03-27 Thread poma
On 28.03.2014 01:27, Ed Greshko wrote: > On 03/28/14 08:24, Paul Cartwright wrote: >> On 03/27/2014 05:08 PM, Daniel J Walsh wrote: >>> What was the AVC that you got? >>> On 03/27/2014 04:58 PM, Paul Cartwright wrote: >> Not sure exactly how to check. /var/log/secure has lots of entries.. I >> didn

Re: new SELinux error

2014-03-27 Thread Ed Greshko
On 03/28/14 08:24, Paul Cartwright wrote: > On 03/27/2014 05:08 PM, Daniel J Walsh wrote: >> What was the AVC that you got? >> On 03/27/2014 04:58 PM, Paul Cartwright wrote: > Not sure exactly how to check. /var/log/secure has lots of entries.. I > didn't write down the error message and the window

Re: new SELinux error

2014-03-27 Thread Paul Cartwright
On 03/27/2014 05:08 PM, Daniel J Walsh wrote: > What was the AVC that you got? > On 03/27/2014 04:58 PM, Paul Cartwright wrote: Not sure exactly how to check. /var/log/secure has lots of entries.. I didn't write down the error message and the window is gone. where do I look ? -- Paul Cartwright R

Re: new SELinux error

2014-03-27 Thread Daniel J Walsh
What was the AVC that you got? On 03/27/2014 04:58 PM, Paul Cartwright wrote: > I am not sure what to do.. > > I got this error message: > # semanage fcontext -a -t FILE_TYPE '$FIX_TARGET_PATH' > where FILE_TYPE is one of the following: NetworkManager_log_t, > NetworkManager_tmp_t, abrt_helper_exec

new SELinux error

2014-03-27 Thread Paul Cartwright
I am not sure what to do.. I got this error message: # semanage fcontext -a -t FILE_TYPE '$FIX_TARGET_PATH' where FILE_TYPE is one of the following: NetworkManager_log_t, NetworkManager_tmp_t, abrt_helper_exec_t, abrt_tmp_t, abrt_upload_watch_tmp_t, abrt_var_cache_t, abrt_var_log_t, abrt_var_run_t

Re: SELinux error on every policy package update

2013-08-07 Thread Suvayu Ali
Hi Daniel, On Wed, Aug 07, 2013 at 01:24:13PM -0400, Daniel J Walsh wrote: > > rm -f /etc/selinux/targeted/modules/active/modules/hotplug.pp > > You might also want to look at any other files in this directory that are not > owned by an rpm package. Worked like a charm. :) I tested by doing y

Re: SELinux error on every policy package update

2013-08-07 Thread Daniel J Walsh
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 08/06/2013 11:54 AM, Suvayu Ali wrote: > Hi Daniel, > > On Tue, Aug 06, 2013 at 08:16:57AM -0400, Daniel J Walsh wrote: >> On 07/27/2013 03:16 PM, Suvayu Ali wrote: >>> Hi, >>> >>> I have been having this weird problem; everytime I there is a >>>

Re: SELinux error on every policy package update

2013-08-06 Thread Suvayu Ali
On Mon, Aug 05, 2013 at 04:46:43PM -0400, Rahul Sundaram wrote: > Hi > > > On Mon, Aug 5, 2013 at 3:55 PM, Suvayu Ali wrote: > > > *Bump* > > > > Anyone have any ideas? Some hints would be good, I am clueless here. > > > > You should probably just file a bug report This seems more like a l

Re: SELinux error on every policy package update

2013-08-06 Thread Suvayu Ali
Hi Daniel, On Tue, Aug 06, 2013 at 08:16:57AM -0400, Daniel J Walsh wrote: > On 07/27/2013 03:16 PM, Suvayu Ali wrote: > > Hi, > > > > I have been having this weird problem; everytime I there is a > > selinux-policy update, I get the following error: > > > > libsepol.print_missing_requirements:

Re: SELinux error on every policy package update

2013-08-06 Thread Daniel J Walsh
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 07/27/2013 03:16 PM, Suvayu Ali wrote: > Hi, > > I have been having this weird problem; everytime I there is a > selinux-policy update, I get the following error: > > libsepol.print_missing_requirements: hotplug's global requirements were not > m

Re: SELinux error on every policy package update

2013-08-05 Thread Rahul Sundaram
Hi On Mon, Aug 5, 2013 at 3:55 PM, Suvayu Ali wrote: > *Bump* > > Anyone have any ideas? Some hints would be good, I am clueless here. You should probably just file a bug report Rahul -- users mailing list users@lists.fedoraproject.org To unsubscribe or change subscription options: https:

Re: SELinux error on every policy package update

2013-08-05 Thread Suvayu Ali
*Bump* Anyone have any ideas? Some hints would be good, I am clueless here. Cheers, On Sat, Jul 27, 2013 at 09:16:28PM +0200, Suvayu Ali wrote: > Hi, > > I have been having this weird problem; everytime I there is a > selinux-policy update, I get the following error: > > libsepol.print_mis

SELinux error on every policy package update

2013-07-27 Thread Suvayu Ali
Hi, I have been having this weird problem; everytime I there is a selinux-policy update, I get the following error: libsepol.print_missing_requirements: hotplug's global requirements were not met: bool init_systemd (No such file or directory). libsemanage.semanage_link_sandbox: Link package

Re: [389-users] selinux error on update to RC6

2010-08-10 Thread Rich Megginson
Aaron Hagopian wrote: > I updated to the latest RC for 1.2.6 and now when I try to start > dirsrv I get the attached error message. > > running 'restorecon -R /usr/lib64/dirsrv' did fix the problem for me, > just letting you guys know. Thanks. https://bugzilla.redhat.com/show_bug.cgi?id=622880 an

[389-users] selinux error on update to RC6

2010-08-10 Thread Aaron Hagopian
I updated to the latest RC for 1.2.6 and now when I try to start dirsrv I get the attached error message. running 'restorecon -R /usr/lib64/dirsrv' did fix the problem for me, just letting you guys know. Thanks, Aaron Summary: SELinux is preventing /usr/sbin/ns-slapd "getattr" access to /usr/l

Re: SELinux error booting backup f12

2010-05-24 Thread jackson byers
Dan Walsh wrote: > You should not need either. > selinux=0 > Disables SELinux. The boot system leaves a flag around telling the > system that SELinux has been disabled. The next time you enable it > (booting without the selinux=0 flag) the system forces a relable. Which > means every file/dir/

Re: SELinux error booting backup f12

2010-05-24 Thread Daniel J Walsh
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 05/22/2010 08:12 PM, jackson byers wrote: > Daniel J Walsh wrote > >> You can boot with selinux=0 or enforcing=0. enforcing=0 means that >> SELinux will block nothing, but maintain the labeling. > > 1) selinux=0 worked; booted up into my backup

Re: SELinux error booting backup f12

2010-05-23 Thread Peter Larsen
In short, selinux=0 turns off selinux. enforcing=0 disables it. Meaning if these are your current parameters you are not using it. jackson byers wrote: >Daniel J Walsh wrote > >> You can boot with selinux=0 or enforcing=0. enforcing=0 means that >> SELinux will block nothing, but maintain the

Re: SELinux error booting backup f12

2010-05-22 Thread jackson byers
Daniel J Walsh wrote > You can boot with selinux=0 or enforcing=0. enforcing=0 means that > SELinux will block nothing, but maintain the labeling. 1) selinux=0 worked; booted up into my backup f12, looks good. 2) next tried rebooting with enforcing=0 This was more difficult; the boot proc

Re: SELinux error booting backup f12

2010-05-21 Thread Daniel J Walsh
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 05/21/2010 02:56 PM, jackson byers wrote: > [by...@f12 ~]$ uname -r > 2.6.32.11-99.fc12.i686.PAE > > login SElinux error trying to boot my backup copy of f12. > Main f12 on external usb at /media/rootusb7, ext4. > Backup f12copy

SELinux error booting backup f12

2010-05-21 Thread jackson byers
[by...@f12 ~]$ uname -r 2.6.32.11-99.fc12.i686.PAE login SElinux error trying to boot my backup copy of f12. Main f12 on external usb at /media/rootusb7, ext4. Backup f12copy on external usb at /media/rootusb8, ext3. Both use same /boot on internal hdisk, sdb8. I think i got the changes correct