Gentoo Archives: gentoo-hardened

From: Hinnerk van Bruinehsen <h.v.bruinehsen@×××××××××.de>
To: gentoo-hardened@l.g.o
Subject: Re: [gentoo-hardened] SELinux denying sudo
Date: Fri, 26 Oct 2012 18:03:04
Message-Id: 508AB114.10503@fu-berlin.de
In Reply to: [gentoo-hardened] SELinux denying sudo by Stan Sander
1 -----BEGIN PGP SIGNED MESSAGE-----
2 Hash: SHA1
3
4 On 26.10.2012 17:45, Stan Sander wrote:
5 > Probably something I don't have tweaked just right, but a while ago
6 > when I tried to sudo it failed. I built this system at least 6
7 > months ago and followed the procedures that were posted at that
8 > time, but then wasn't able to work towards putting SELinux in
9 > enforcing mode until this past week.
10 >
11 > sudo: unable to get default type for role sysadm_r sudo: unable to
12 > execute /bin/bash: Invalid argument
13 >
14 > I tried again after running newrole to switch to sysadm_r, but got
15 > the same result.
16 >
17 > The denials in the logs were:
18 <SNIP>
19
20 First question: did you install selinux-sudo and relabel everything
21 afterwards
22
23 WKR
24 Hinnerk
25
26 -----BEGIN PGP SIGNATURE-----
27 Version: GnuPG v2.0.19 (GNU/Linux)
28 Comment: Using GnuPG with Mozilla - http://www.enigmail.net/
29
30 iQEcBAEBAgAGBQJQirEUAAoJEJwwOFaNFkYcKKYIALSWlk00AMrgjtn/STktJB31
31 FFXn8Y8dH7U5vxuSvfyX4FI72GNlCTNYnqsW5Di/4SMOQonJdtPCT9XXywNYni7f
32 hLZC5zPyKNDjHGDoDnIhmnid+dUnNscN1jHmXpjBwgRoOIO/4ODORrFvGjGcc8kx
33 kGzAlQ6SFvIafwOTzJDUafmixYZSZImnwCsD5OHRcMn5uBjYseydZQfBm9xFN+dy
34 Kdfc50+pMjYvD91qa/SYYKGfeq7lo9cqghao13fhthO9qN6S3zBqR8OLv0q7fwWa
35 DJyFosW8ZNzJ6Lp/JMoSTHeCd8wWp374Na9/6goPteZ/3KOl2Z4hFJCFVu8bATA=
36 =hSpr
37 -----END PGP SIGNATURE-----

Replies

Subject Author
Re: [gentoo-hardened] SELinux denying sudo Stan Sander <stsander@×××××.net>