can anyone help me figure out what is going on here? I'll look at it in the
morning, but still might not find it on my own.

SELinux is preventing /usr/lib/cups/filter/hpcups from search access on the
directory /var/lib/hp.

*****  Plugin catchall (100. confidence) suggests
 ***************************

If you believe that hpcups should be allowed search access on the hp
directory by default.
Then you should report this as a bug.
You can generate a local policy module to allow this access.
Do
allow this access for now by executing:
# grep hpcups /var/log/audit/audit.log | audit2allow -M mypol
# semodule -i mypol.pp

Additional Information:
Source Context                system_u:system_r:cupsd_t:s0-s0:c0.c1023
Target Context                system_u:object_r:hplip_var_lib_t:s0
Target Objects                /var/lib/hp [ dir ]
Source                        hpcups
Source Path                   /usr/lib/cups/filter/hpcups
Port                          <Unknown>
Host                          localhost.localdomain
Source RPM Packages           hpijs-3.13.2-1.fc18.x86_64
Target RPM Packages           hplip-3.13.2-1.fc18.x86_64
Policy RPM                    selinux-policy-3.11.1-71.fc18.noarch
Selinux Enabled               True
Policy Type                   targeted
Enforcing Mode                Enforcing
Host Name                     localhost.localdomain
Platform                      Linux localhost.localdomain
3.7.2-204.fc18.x86_64
                              #1 SMP Wed Jan 16 16:22:52 UTC 2013 x86_64
x86_64
Alert Count                   1
First Seen                    2013-03-29 21:55:27 PDT
Last Seen                     2013-03-29 21:55:27 PDT
Local ID                      9063f3dd-5d16-4075-94d6-dde1b6741646

Raw Audit Messages
type=AVC msg=audit(1364619327.931:341): avc:  denied  { search } for
 pid=2487 comm="hpcups" name="hp" dev="dm-2" ino=1582738
scontext=system_u:system_r:cupsd_t:s0-s0:c0.c1023
tcontext=system_u:object_r:hplip_var_lib_t:s0 tclass=dir


type=SYSCALL msg=audit(1364619327.931:341): arch=x86_64 syscall=open
success=no exit=EACCES a0=424c24 a1=0 a2=1b6 a3=238 items=0 ppid=806
pid=2487 auid=4294967295 uid=4 gid=7 euid=4 suid=4 fsuid=4 egid=7 sgid=7
fsgid=7 ses=4294967295 tty=(none) comm=hpcups
exe=/usr/lib/cups/filter/hpcups
subj=system_u:system_r:cupsd_t:s0-s0:c0.c1023 key=(null)

Hash: hpcups,cupsd_t,hplip_var_lib_t,dir,search

audit2allow

#============= cupsd_t ==============
allow cupsd_t hplip_var_lib_t:dir search;

audit2allow -R

#============= cupsd_t ==============
allow cupsd_t hplip_var_lib_t:dir search;


Thanks for any help.
-- 
users mailing list
users@lists.fedoraproject.org
To unsubscribe or change subscription options:
https://admin.fedoraproject.org/mailman/listinfo/users
Guidelines: http://fedoraproject.org/wiki/Mailing_list_guidelines
Have a question? Ask away: http://ask.fedoraproject.org

Reply via email to