From mboxrd@z Thu Jan 1 00:00:00 1970 From: Laura Lazzati Subject: Re: SELinux log Date: Fri, 7 Jun 2019 20:12:59 -0300 Message-ID: References: <87sgsocqx5.fsf@elephly.net> <87k1dyk33n.fsf@elephly.net> <87ef4586oh.fsf@elephly.net> Mime-Version: 1.0 Content-Type: multipart/alternative; boundary="000000000000dd2b4e058ac3fa23" Return-path: Received: from eggs.gnu.org ([2001:470:142:3::10]:40438) by lists.gnu.org with esmtp (Exim 4.86_2) (envelope-from ) id 1hZO3G-0003ND-Ct for guix-devel@gnu.org; Fri, 07 Jun 2019 19:13:39 -0400 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1hZO3F-0001Rd-AG for guix-devel@gnu.org; Fri, 07 Jun 2019 19:13:38 -0400 Received: from mail-wr1-x436.google.com ([2a00:1450:4864:20::436]:33376) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_128_CBC_SHA1:16) (Exim 4.71) (envelope-from ) id 1hZO3F-0001O0-2W for guix-devel@gnu.org; Fri, 07 Jun 2019 19:13:37 -0400 Received: by mail-wr1-x436.google.com with SMTP id n9so3670863wru.0 for ; Fri, 07 Jun 2019 16:13:36 -0700 (PDT) In-Reply-To: List-Id: "Development of GNU Guix and the GNU System distribution." List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: guix-devel-bounces+gcggd-guix-devel=m.gmane.org@gnu.org Sender: "Guix-devel" To: Ricardo Wurmus Cc: Guix-devel --000000000000dd2b4e058ac3fa23 Content-Type: text/plain; charset="UTF-8" --8<---------------cut here---------------start------------->8--- type=FS_RELABEL msg=audit(1559947443.686:26389): pid=2658 uid=0 auid=1000 ses=3 subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 msg='op=mass relabel exe="/usr/sbin/setfiles" hostname=localhost.localdomain addr=? terminal=pts/1 res=failed'UID="root" AUID="laura" type=MAC_POLICY_LOAD msg=audit(1559947618.423:26390): auid=1000 ses=3 lsm=selinux res=1AUID="laura" type=USER_AVC msg=audit(1559947745.466:39283): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg='avc: received policyload notice (seqno=3) exe="/usr/lib/systemd/systemd" sauid=0 hostname=? addr=? terminal=?'UID="root" AUID="unset" SAUID="root" type=USER_AVC msg=audit(1559947745.467:39284): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:init_t:s0 msg='avc: received policyload notice (seqno=4) exe="/usr/lib/systemd/systemd" sauid=0 hostname=? addr=? terminal=?'UID="root" AUID="unset" SAUID="root" type=AVC msg=audit(1559947746.785:39285): avc: denied { relabelto } for pid=2688 comm="restorecon" name="guix" dev="dm-0" ino=311508 scontext=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 tcontext=unconfined_u:object_r:guix_daemon.guix_daemon_conf_t:s0 tclass=dir permissive=0 type=AVC msg=audit(1559947746.787:39286): avc: denied { relabelto } for pid=2688 comm="restorecon" name="acl" dev="dm-0" ino=306189 scontext=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 tcontext=unconfined_u:object_r:guix_daemon.guix_daemon_conf_t:s0 tclass=file permissive=0 --8<---------------cut here---------------end--------------->8--- --000000000000dd2b4e058ac3fa23 Content-Type: text/html; charset="UTF-8" Content-Transfer-Encoding: quoted-printable

--8<---------------cut here---------------start------------->8---
type=3DFS_RELABEL msg=3Daudit(1559947443.686:26389): pid=3D2658 uid= =3D0 auid=3D1000 ses=3D3 subj=3Dunconfined_u:unconfined_r:unconfined_t:s0-s= 0:c0.c1023 msg=3D'op=3Dmass relabel exe=3D"/usr/sbin/setfiles"=20 hostname=3Dlocalhost.localdomain addr=3D? terminal=3Dpts/1=20 res=3Dfailed'UID=3D"root" AUID=3D"laura"
type= =3DMAC_POLICY_LOAD msg=3Daudit(1559947618.423:26390): auid=3D1000 ses=3D3 l= sm=3Dselinux res=3D1AUID=3D"laura"

type=3DUSER_AVC msg=3Da= udit(1559947745.466:39283): pid=3D1 uid=3D0 auid=3D4294967295 ses=3D4294967= 295 subj=3Dsystem_u:system_r:init_t:s0 msg=3D'avc: =C2=A0received polic= yload notice (seqno=3D3) =C2=A0exe=3D"/usr/lib/systemd/systemd" s= auid=3D0 hostname=3D? addr=3D? terminal=3D?'UID=3D"root" AUID= =3D"unset" SAUID=3D"root"
type=3DUSER_AVC msg=3Daudi= t(1559947745.467:39284): pid=3D1 uid=3D0 auid=3D4294967295 ses=3D4294967295= subj=3Dsystem_u:system_r:init_t:s0 msg=3D'avc: =C2=A0received policylo= ad notice (seqno=3D4) =C2=A0exe=3D"/usr/lib/systemd/systemd" saui= d=3D0 hostname=3D? addr=3D? terminal=3D?'UID=3D"root" AUID=3D= "unset" SAUID=3D"root"
type=3DAVC msg=3Daudit(155994= 7746.785:39285): avc: =C2=A0denied { relabelto } for =C2=A0pid=3D2688 comm= =3D"restorecon" name=3D"guix" dev=3D"dm-0" in= o=3D311508 scontext=3Dunconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023= tcontext=3Dunconfined_u:object_r:guix_daemon.guix_daemon_conf_t:s0 tclass= =3Ddir permissive=3D0
type=3DAVC msg=3Daudit(1559947746.787:39286):= avc: =C2=A0denied { relabelto } for =C2=A0pid=3D2688 comm=3D"restorec= on" name=3D"acl" dev=3D"dm-0" ino=3D306189 scontex= t=3Dunconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023 tcontext=3Dunconf= ined_u:object_r:guix_daemon.guix_daemon_conf_t:s0 tclass=3Dfile permissive= =3D0
--8<---------------cut here---------------end--------------->8---
--000000000000dd2b4e058ac3fa23--