Gentoo Archives: gentoo-hardened

From: Dave <mailintern@×××××××.org>
To: gentoo-hardened@l.g.o
Subject: Re: [gentoo-hardened] SELinux and KDE4.6.3
Date: Thu, 23 Jun 2011 18:48:55
Message-Id: 1308854727.15804.1466530629@webmail.messagingengine.com
1 Hi,
2
3 sorry for not responding to the message id. Some problmes with the
4 webinterface.
5
6 "Anthony G. Basile" <basile@××××××××××××××.edu>:
7
8 > On 06/23/2011 10:18 AM, Dave wrote:
9 > > Hi all,
10 > >
11 > > I've Gentoo with KDE4.5.3 and SELinux enforcing targeted enabled
12 > > plus grsecurity working fine. But KDE4.6.3 on a new system has
13 > > difficulties starting dolphin, konqueror and switching from classic
14 > > KMenu's style to modern isn't possible.
15 > > Can anybody give kindly me a hint?
16 > >
17 > > If SELinux is disabled then it's working fine.
18 > >
19 > > acl.log was used to build *.pp semodules (audit2allow). But these
20 > > KDE's applications still won't worked.
21 > >
22 > >
23 > > Best regards
24 > >
25 > > Dave
26 > >
27 > >
28 >
29 > Can you give us the audit logs?
30
31 cat avc.log >>
32
33 Jun 22 14:49:20 localhost kernel: [ 47.997105] type=1400
34 audit(1308746960.495:3): avc: denied { write } for pid=5004 comm="rc"
35 name="exclusive" dev=tmpfs ino=4191 scontext=system_u:system_r:openvpn_t
36 tcontext=system_u:object_r:initrc_state_t tclass=dir
37 Jun 22 14:49:20 localhost kernel: [ 47.997118] type=1400
38 audit(1308746960.495:4): avc: denied { add_name } for pid=5004
39 comm="rc" name="openvpn" scontext=system_u:system_r:openvpn_t
40 tcontext=system_u:object_r:initrc_state_t tclass=dir
41 Jun 22 14:49:20 localhost kernel: [ 47.997133] type=1400
42 audit(1308746960.495:5): avc: denied { create } for pid=5004
43 comm="rc" name="openvpn" scontext=system_u:system_r:openvpn_t
44 tcontext=system_u:object_r:initrc_state_t tclass=file
45 Jun 22 14:49:20 localhost kernel: [ 47.997150] type=1400
46 audit(1308746960.495:6): avc: denied { write } for pid=5004 comm="rc"
47 name="openvpn" dev=tmpfs ino=8836 scontext=system_u:system_r:openvpn_t
48 tcontext=system_u:object_r:initrc_state_t tclass=file
49 Jun 22 14:49:20 localhost kernel: [ 47.997164] type=1400
50 audit(1308746960.495:7): avc: denied { lock } for pid=5004 comm="rc"
51 path="/lib64/rc/init.d/exclusive/openvpn" dev=tmpfs ino=8836
52 scontext=system_u:system_r:openvpn_t
53 tcontext=system_u:object_r:initrc_state_t tclass=file
54 Jun 22 14:49:20 localhost kernel: [ 47.997196] type=1400
55 audit(1308746960.495:8): avc: denied { create } for pid=5004
56 comm="rc" name="openvpn" scontext=system_u:system_r:openvpn_t
57 tcontext=system_u:object_r:initrc_state_t tclass=lnk_file
58 Jun 22 14:49:20 localhost kernel: [ 47.997238] type=1400
59 audit(1308746960.495:9): avc: denied { remove_name } for pid=5004
60 comm="rc" name="openvpn" dev=tmpfs ino=8405
61 scontext=system_u:system_r:openvpn_t
62 tcontext=system_u:object_r:initrc_state_t tclass=dir
63 Jun 22 14:49:20 localhost kernel: [ 47.997248] type=1400
64 audit(1308746960.495:10): avc: denied { unlink } for pid=5004
65 comm="rc" name="openvpn" dev=tmpfs ino=8405
66 scontext=system_u:system_r:openvpn_t
67 tcontext=system_u:object_r:initrc_state_t tclass=lnk_file
68 Jun 22 14:49:20 localhost kernel: [ 48.000853] type=1400
69 audit(1308746960.498:11): avc: denied { read } for pid=5004 comm="rc"
70 name="scheduled" dev=tmpfs ino=4192 scontext=system_u:system_r:openvpn_t
71 tcontext=system_u:object_r:initrc_state_t tclass=dir
72 Jun 22 14:49:42 localhost kernel: [ 69.508141] type=1400
73 audit(1308746982.006:14): avc: denied { read } for pid=5154
74 comm="hdparm" name="sda" dev=tmpfs ino=5936
75 scontext=system_u:system_r:system_dbusd_t
76 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
77 Jun 22 14:49:42 localhost kernel: [ 69.508155] type=1400
78 audit(1308746982.006:15): avc: denied { open } for pid=5154
79 comm="hdparm" name="sda" dev=tmpfs ino=5936
80 scontext=system_u:system_r:system_dbusd_t
81 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
82 Jun 22 14:49:42 localhost kernel: [ 69.508247] type=1400
83 audit(1308746982.006:16): avc: denied { ioctl } for pid=5154
84 comm="hdparm" path="/dev/sda" dev=tmpfs ino=5936
85 scontext=system_u:system_r:system_dbusd_t
86 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
87 Jun 22 14:49:43 localhost kernel: [ 70.910072] type=1400
88 audit(1308746983.408:17): avc: denied { getattr } for pid=5175
89 comm="backlighthelper" path="/.config/Trolltech.conf" dev=dm-1
90 ino=431095 scontext=system_u:system_r:system_dbusd_t
91 tcontext=system_u:object_r:default_t tclass=file
92 Jun 22 14:49:43 localhost kernel: [ 70.910196] type=1400
93 audit(1308746983.408:18): avc: denied { read } for pid=5175
94 comm="backlighthelper" name="Trolltech.conf" dev=dm-1 ino=431095
95 scontext=system_u:system_r:system_dbusd_t
96 tcontext=system_u:object_r:default_t tclass=file
97 Jun 22 14:49:43 localhost kernel: [ 70.910224] type=1400
98 audit(1308746983.408:19): avc: denied { open } for pid=5175
99 comm="backlighthelper" name="Trolltech.conf" dev=dm-1 ino=431095
100 scontext=system_u:system_r:system_dbusd_t
101 tcontext=system_u:object_r:default_t tclass=file
102 Jun 22 14:49:43 localhost kernel: [ 70.910376] type=1400
103 audit(1308746983.408:20): avc: denied { lock } for pid=5175
104 comm="backlighthelper" path="/.config/Trolltech.conf" dev=dm-1
105 ino=431095 scontext=system_u:system_r:system_dbusd_t
106 tcontext=system_u:object_r:default_t tclass=file
107 Jun 22 14:49:43 localhost kernel: [ 70.997489] type=1400
108 audit(1308746983.495:21): avc: denied { sys_ptrace } for pid=5175
109 comm="backlighthelper" capability=19
110 scontext=system_u:system_r:system_dbusd_t
111 tcontext=system_u:system_r:system_dbusd_t tclass=capability
112 Jun 22 14:49:44 localhost kernel: [ 72.088291] type=1400
113 audit(1308746984.586:22): avc: denied { setsched } for pid=5173
114 comm="mount" scontext=system_u:system_r:system_dbusd_t
115 tcontext=system_u:system_r:kernel_t tclass=process
116 Jun 22 14:49:44 localhost kernel: [ 72.088361] type=1400
117 audit(1308746984.586:23): avc: denied { write } for pid=5173
118 comm="mount" name="/" dev=dm-1 ino=2
119 scontext=system_u:system_r:system_dbusd_t
120 tcontext=system_u:object_r:root_t tclass=dir
121 Jun 22 14:54:02 localhost kernel: [ 330.010469] type=1400
122 audit(1308747242.508:55): avc: denied { getattr } for pid=5812
123 comm="rc" path="/lib64/rc/init.d/rc.stopping" dev=tmpfs ino=22405
124 scontext=system_u:system_r:openvpn_t
125 tcontext=system_u:object_r:initrc_state_t tclass=dir
126 Jun 22 14:54:02 localhost kernel: [ 330.082303] type=1400
127 audit(1308747242.580:56): avc: denied { remove_name } for pid=4797
128 comm="named" name="session.key" dev=dm-1 ino=393268
129 scontext=system_u:system_r:named_t tcontext=system_u:object_r:default_t
130 tclass=dir
131 Jun 22 14:54:02 localhost kernel: [ 330.084307] type=1400
132 audit(1308747242.582:57): avc: denied { remove_name } for pid=4797
133 comm="named" name="named.pid" dev=dm-1 ino=393267
134 scontext=system_u:system_r:named_t tcontext=system_u:object_r:default_t
135 tclass=dir
136 Jun 22 14:54:03 localhost kernel: [ 330.517298] type=1400
137 audit(1308747243.015:58): avc: denied { unlink } for pid=4649
138 comm="dhcpcd" name="dhcpcd.sock" dev=dm-1 ino=262207
139 scontext=system_u:system_r:dhcpc_t tcontext=system_u:object_r:var_run_t
140 tclass=sock_file
141 Jun 22 14:54:03 localhost kernel: [ 330.553092] type=1400
142 audit(1308747243.050:59): avc: denied { write } for pid=6142
143 comm="iptables-save" path="/var/lib/iptables/rules-save" dev=dm-1
144 ino=265407 scontext=system_u:system_r:iptables_t
145 tcontext=system_u:object_r:var_lib_t tclass=file
146 Jun 22 16:30:19 localhost kernel: [ 43.829172] type=1400
147 audit(1308753019.339:3): avc: denied { remove_name } for pid=4811
148 comm="named" name="session.key" dev=dm-1 ino=393268
149 scontext=system_u:system_r:named_t tcontext=system_u:object_r:default_t
150 tclass=dir
151 Jun 22 16:30:19 localhost kernel: [ 43.829201] type=1400
152 audit(1308753019.339:4): avc: denied { unlink } for pid=4811
153 comm="named" name="session.key" dev=dm-1 ino=393268
154 scontext=system_u:system_r:named_t tcontext=system_u:object_r:default_t
155 tclass=file
156 Jun 22 16:30:29 localhost kernel: [ 54.212785] type=1400
157 audit(1308753029.722:5): avc: denied { write } for pid=5026 comm="rc"
158 name="exclusive" dev=tmpfs ino=4191 scontext=system_u:system_r:openvpn_t
159 tcontext=system_u:object_r:initrc_state_t tclass=dir
160 Jun 22 16:30:29 localhost kernel: [ 54.212794] type=1400
161 audit(1308753029.722:6): avc: denied { add_name } for pid=5026
162 comm="rc" name="openvpn" scontext=system_u:system_r:openvpn_t
163 tcontext=system_u:object_r:initrc_state_t tclass=dir
164 Jun 22 16:30:29 localhost kernel: [ 54.212805] type=1400
165 audit(1308753029.722:7): avc: denied { create } for pid=5026
166 comm="rc" name="openvpn" scontext=system_u:system_r:openvpn_t
167 tcontext=system_u:object_r:initrc_state_t tclass=file
168 Jun 22 16:30:29 localhost kernel: [ 54.212816] type=1400
169 audit(1308753029.722:8): avc: denied { write } for pid=5026 comm="rc"
170 name="openvpn" dev=tmpfs ino=9101 scontext=system_u:system_r:openvpn_t
171 tcontext=system_u:object_r:initrc_state_t tclass=file
172 Jun 22 16:30:29 localhost kernel: [ 54.212826] type=1400
173 audit(1308753029.722:9): avc: denied { lock } for pid=5026 comm="rc"
174 path="/lib64/rc/init.d/exclusive/openvpn" dev=tmpfs ino=9101
175 scontext=system_u:system_r:openvpn_t
176 tcontext=system_u:object_r:initrc_state_t tclass=file
177 Jun 22 16:30:29 localhost kernel: [ 54.212849] type=1400
178 audit(1308753029.722:10): avc: denied { create } for pid=5026
179 comm="rc" name="openvpn" scontext=system_u:system_r:openvpn_t
180 tcontext=system_u:object_r:initrc_state_t tclass=lnk_file
181 Jun 22 16:30:29 localhost kernel: [ 54.212876] type=1400
182 audit(1308753029.722:11): avc: denied { remove_name } for pid=5026
183 comm="rc" name="openvpn" dev=tmpfs ino=8516
184 scontext=system_u:system_r:openvpn_t
185 tcontext=system_u:object_r:initrc_state_t tclass=dir
186 Jun 22 16:30:29 localhost kernel: [ 54.212883] type=1400
187 audit(1308753029.722:12): avc: denied { unlink } for pid=5026
188 comm="rc" name="openvpn" dev=tmpfs ino=8516
189 scontext=system_u:system_r:openvpn_t
190 tcontext=system_u:object_r:initrc_state_t tclass=lnk_file
191 Jun 22 16:30:29 localhost kernel: [ 54.215757] type=1400
192 audit(1308753029.725:13): avc: denied { read } for pid=5026 comm="rc"
193 name="scheduled" dev=tmpfs ino=4192 scontext=system_u:system_r:openvpn_t
194 tcontext=system_u:object_r:initrc_state_t tclass=dir
195 Jun 22 16:30:29 localhost kernel: [ 54.215765] type=1400
196 audit(1308753029.725:14): avc: denied { open } for pid=5026 comm="rc"
197 name="scheduled" dev=tmpfs ino=4192 scontext=system_u:system_r:openvpn_t
198 tcontext=system_u:object_r:initrc_state_t tclass=dir
199 Jun 22 16:30:38 localhost kernel: [ 63.241980] type=1400
200 audit(1308753038.751:16): avc: denied { getattr } for pid=5235
201 comm="rc" path="/lib64/rc/init.d/rc.stopping" dev=tmpfs ino=11492
202 scontext=system_u:system_r:openvpn_t
203 tcontext=system_u:object_r:initrc_state_t tclass=dir
204 Jun 22 16:30:39 localhost kernel: [ 63.835651] type=1400
205 audit(1308753039.345:17): avc: denied { unlink } for pid=4678
206 comm="dhcpcd" name="dhcpcd.sock" dev=dm-1 ino=262207
207 scontext=system_u:system_r:dhcpc_t tcontext=system_u:object_r:var_run_t
208 tclass=sock_file
209 Jun 22 16:30:39 localhost kernel: [ 63.876428] type=1400
210 audit(1308753039.386:18): avc: denied { write } for pid=5567
211 comm="iptables-save" path="/var/lib/iptables/rules-save" dev=dm-1
212 ino=265407 scontext=system_u:system_r:iptables_t
213 tcontext=system_u:object_r:var_lib_t tclass=file
214 Jun 22 21:15:06 localhost kernel: [ 50.638368] type=1400
215 audit(1308770106.832:3): avc: denied { write } for pid=5028 comm="rc"
216 name="exclusive" dev=tmpfs ino=4199 scontext=system_u:system_r:openvpn_t
217 tcontext=system_u:object_r:initrc_state_t tclass=dir
218 Jun 22 21:15:06 localhost kernel: [ 50.638376] type=1400
219 audit(1308770106.832:4): avc: denied { add_name } for pid=5028
220 comm="rc" name="openvpn" scontext=system_u:system_r:openvpn_t
221 tcontext=system_u:object_r:initrc_state_t tclass=dir
222 Jun 22 21:15:06 localhost kernel: [ 50.638387] type=1400
223 audit(1308770106.832:5): avc: denied { create } for pid=5028
224 comm="rc" name="openvpn" scontext=system_u:system_r:openvpn_t
225 tcontext=system_u:object_r:initrc_state_t tclass=file
226 Jun 22 21:15:06 localhost kernel: [ 50.638398] type=1400
227 audit(1308770106.832:6): avc: denied { write } for pid=5028 comm="rc"
228 name="openvpn" dev=tmpfs ino=9100 scontext=system_u:system_r:openvpn_t
229 tcontext=system_u:object_r:initrc_state_t tclass=file
230 Jun 22 21:15:06 localhost kernel: [ 50.638407] type=1400
231 audit(1308770106.832:7): avc: denied { lock } for pid=5028 comm="rc"
232 path="/lib64/rc/init.d/exclusive/openvpn" dev=tmpfs ino=9100
233 scontext=system_u:system_r:openvpn_t
234 tcontext=system_u:object_r:initrc_state_t tclass=file
235 Jun 22 21:15:06 localhost kernel: [ 50.638430] type=1400
236 audit(1308770106.832:8): avc: denied { create } for pid=5028
237 comm="rc" name="openvpn" scontext=system_u:system_r:openvpn_t
238 tcontext=system_u:object_r:initrc_state_t tclass=lnk_file
239 Jun 22 21:15:06 localhost kernel: [ 50.638460] type=1400
240 audit(1308770106.832:9): avc: denied { remove_name } for pid=5028
241 comm="rc" name="openvpn" dev=tmpfs ino=8484
242 scontext=system_u:system_r:openvpn_t
243 tcontext=system_u:object_r:initrc_state_t tclass=dir
244 Jun 22 21:15:06 localhost kernel: [ 50.638466] type=1400
245 audit(1308770106.832:10): avc: denied { unlink } for pid=5028
246 comm="rc" name="openvpn" dev=tmpfs ino=8484
247 scontext=system_u:system_r:openvpn_t
248 tcontext=system_u:object_r:initrc_state_t tclass=lnk_file
249 Jun 22 21:15:06 localhost kernel: [ 50.641329] type=1400
250 audit(1308770106.835:11): avc: denied { read } for pid=5028 comm="rc"
251 name="scheduled" dev=tmpfs ino=4200 scontext=system_u:system_r:openvpn_t
252 tcontext=system_u:object_r:initrc_state_t tclass=dir
253 Jun 22 21:15:15 localhost kernel: [ 59.156229] type=1400
254 audit(1308770115.349:14): avc: denied { read } for pid=5184
255 comm="hdparm" name="sda" dev=tmpfs ino=6011
256 scontext=system_u:system_r:system_dbusd_t
257 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
258 Jun 22 21:15:15 localhost kernel: [ 59.156261] type=1400
259 audit(1308770115.349:15): avc: denied { open } for pid=5184
260 comm="hdparm" name="sda" dev=tmpfs ino=6011
261 scontext=system_u:system_r:system_dbusd_t
262 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
263 Jun 22 21:15:15 localhost kernel: [ 59.156437] type=1400
264 audit(1308770115.349:16): avc: denied { ioctl } for pid=5184
265 comm="hdparm" path="/dev/sda" dev=tmpfs ino=6011
266 scontext=system_u:system_r:system_dbusd_t
267 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
268 Jun 22 21:15:16 localhost kernel: [ 60.616409] type=1400
269 audit(1308770116.810:17): avc: denied { getattr } for pid=5205
270 comm="backlighthelper" path="/.config/Trolltech.conf" dev=dm-1
271 ino=431095 scontext=system_u:system_r:system_dbusd_t
272 tcontext=system_u:object_r:default_t tclass=file
273 Jun 22 21:15:16 localhost kernel: [ 60.616533] type=1400
274 audit(1308770116.810:18): avc: denied { read } for pid=5205
275 comm="backlighthelper" name="Trolltech.conf" dev=dm-1 ino=431095
276 scontext=system_u:system_r:system_dbusd_t
277 tcontext=system_u:object_r:default_t tclass=file
278 Jun 22 21:15:16 localhost kernel: [ 60.616562] type=1400
279 audit(1308770116.810:19): avc: denied { open } for pid=5205
280 comm="backlighthelper" name="Trolltech.conf" dev=dm-1 ino=431095
281 scontext=system_u:system_r:system_dbusd_t
282 tcontext=system_u:object_r:default_t tclass=file
283 Jun 22 21:15:16 localhost kernel: [ 60.616714] type=1400
284 audit(1308770116.810:20): avc: denied { lock } for pid=5205
285 comm="backlighthelper" path="/.config/Trolltech.conf" dev=dm-1
286 ino=431095 scontext=system_u:system_r:system_dbusd_t
287 tcontext=system_u:object_r:default_t tclass=file
288 Jun 22 21:15:16 localhost kernel: [ 60.697908] type=1400
289 audit(1308770116.891:21): avc: denied { sys_ptrace } for pid=5205
290 comm="backlighthelper" capability=19
291 scontext=system_u:system_r:system_dbusd_t
292 tcontext=system_u:system_r:system_dbusd_t tclass=capability
293 Jun 22 21:15:18 localhost kernel: [ 62.385721] type=1400
294 audit(1308770118.579:22): avc: denied { setsched } for pid=5203
295 comm="mount" scontext=system_u:system_r:system_dbusd_t
296 tcontext=system_u:system_r:kernel_t tclass=process
297 Jun 22 21:15:18 localhost kernel: [ 62.385793] type=1400
298 audit(1308770118.579:23): avc: denied { write } for pid=5203
299 comm="mount" name="/" dev=dm-1 ino=2
300 scontext=system_u:system_r:system_dbusd_t
301 tcontext=system_u:object_r:root_t tclass=dir
302 Jun 23 08:31:46 localhost kernel: [ 50.188833] type=1400
303 audit(1308810706.673:3): avc: denied { remove_name } for pid=4844
304 comm="named" name="session.key" dev=dm-1 ino=393268
305 scontext=system_u:system_r:named_t tcontext=system_u:object_r:default_t
306 tclass=dir
307 Jun 23 08:31:46 localhost kernel: [ 50.188840] type=1400
308 audit(1308810706.673:4): avc: denied { unlink } for pid=4844
309 comm="named" name="session.key" dev=dm-1 ino=393268
310 scontext=system_u:system_r:named_t tcontext=system_u:object_r:default_t
311 tclass=file
312 Jun 23 08:31:57 localhost kernel: [ 61.274941] type=1400
313 audit(1308810717.759:5): avc: denied { write } for pid=5059 comm="rc"
314 name="exclusive" dev=tmpfs ino=4201 scontext=system_u:system_r:openvpn_t
315 tcontext=system_u:object_r:initrc_state_t tclass=dir
316 Jun 23 08:31:57 localhost kernel: [ 61.274950] type=1400
317 audit(1308810717.759:6): avc: denied { add_name } for pid=5059
318 comm="rc" name="openvpn" scontext=system_u:system_r:openvpn_t
319 tcontext=system_u:object_r:initrc_state_t tclass=dir
320 Jun 23 08:31:57 localhost kernel: [ 61.274961] type=1400
321 audit(1308810717.759:7): avc: denied { create } for pid=5059
322 comm="rc" name="openvpn" scontext=system_u:system_r:openvpn_t
323 tcontext=system_u:object_r:initrc_state_t tclass=file
324 Jun 23 08:31:57 localhost kernel: [ 61.274973] type=1400
325 audit(1308810717.759:8): avc: denied { write } for pid=5059 comm="rc"
326 name="openvpn" dev=tmpfs ino=9042 scontext=system_u:system_r:openvpn_t
327 tcontext=system_u:object_r:initrc_state_t tclass=file
328 Jun 23 08:31:57 localhost kernel: [ 61.274982] type=1400
329 audit(1308810717.759:9): avc: denied { lock } for pid=5059 comm="rc"
330 path="/lib64/rc/init.d/exclusive/openvpn" dev=tmpfs ino=9042
331 scontext=system_u:system_r:openvpn_t
332 tcontext=system_u:object_r:initrc_state_t tclass=file
333 Jun 23 08:31:57 localhost kernel: [ 61.275018] type=1400
334 audit(1308810717.760:10): avc: denied { create } for pid=5059
335 comm="rc" name="openvpn" scontext=system_u:system_r:openvpn_t
336 tcontext=system_u:object_r:initrc_state_t tclass=lnk_file
337 Jun 23 08:31:57 localhost kernel: [ 61.275048] type=1400
338 audit(1308810717.760:11): avc: denied { remove_name } for pid=5059
339 comm="rc" name="openvpn" dev=tmpfs ino=8454
340 scontext=system_u:system_r:openvpn_t
341 tcontext=system_u:object_r:initrc_state_t tclass=dir
342 Jun 23 08:31:57 localhost kernel: [ 61.275056] type=1400
343 audit(1308810717.760:12): avc: denied { unlink } for pid=5059
344 comm="rc" name="openvpn" dev=tmpfs ino=8454
345 scontext=system_u:system_r:openvpn_t
346 tcontext=system_u:object_r:initrc_state_t tclass=lnk_file
347 Jun 23 08:31:57 localhost kernel: [ 61.277195] type=1400
348 audit(1308810717.762:13): avc: denied { read } for pid=5059 comm="rc"
349 name="scheduled" dev=tmpfs ino=4202 scontext=system_u:system_r:openvpn_t
350 tcontext=system_u:object_r:initrc_state_t tclass=dir
351 Jun 23 08:31:57 localhost kernel: [ 61.277203] type=1400
352 audit(1308810717.762:14): avc: denied { open } for pid=5059 comm="rc"
353 name="scheduled" dev=tmpfs ino=4202 scontext=system_u:system_r:openvpn_t
354 tcontext=system_u:object_r:initrc_state_t tclass=dir
355 Jun 23 08:32:08 localhost kernel: [ 71.793957] type=1400
356 audit(1308810728.278:16): avc: denied { read } for pid=5216
357 comm="hdparm" name="sda" dev=tmpfs ino=5962
358 scontext=system_u:system_r:system_dbusd_t
359 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
360 Jun 23 08:32:08 localhost kernel: [ 71.793971] type=1400
361 audit(1308810728.278:17): avc: denied { open } for pid=5216
362 comm="hdparm" name="sda" dev=tmpfs ino=5962
363 scontext=system_u:system_r:system_dbusd_t
364 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
365 Jun 23 08:32:08 localhost kernel: [ 71.794063] type=1400
366 audit(1308810728.279:18): avc: denied { ioctl } for pid=5216
367 comm="hdparm" path="/dev/sda" dev=tmpfs ino=5962
368 scontext=system_u:system_r:system_dbusd_t
369 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
370 Jun 23 08:32:09 localhost kernel: [ 73.252952] type=1400
371 audit(1308810729.737:19): avc: denied { getattr } for pid=5237
372 comm="backlighthelper" path="/.config/Trolltech.conf" dev=dm-1
373 ino=431095 scontext=system_u:system_r:system_dbusd_t
374 tcontext=system_u:object_r:default_t tclass=file
375 Jun 23 08:32:09 localhost kernel: [ 73.253116] type=1400
376 audit(1308810729.738:20): avc: denied { read } for pid=5237
377 comm="backlighthelper" name="Trolltech.conf" dev=dm-1 ino=431095
378 scontext=system_u:system_r:system_dbusd_t
379 tcontext=system_u:object_r:default_t tclass=file
380 Jun 23 08:32:09 localhost kernel: [ 73.253147] type=1400
381 audit(1308810729.738:21): avc: denied { open } for pid=5237
382 comm="backlighthelper" name="Trolltech.conf" dev=dm-1 ino=431095
383 scontext=system_u:system_r:system_dbusd_t
384 tcontext=system_u:object_r:default_t tclass=file
385 Jun 23 08:32:09 localhost kernel: [ 73.253311] type=1400
386 audit(1308810729.738:22): avc: denied { lock } for pid=5237
387 comm="backlighthelper" path="/.config/Trolltech.conf" dev=dm-1
388 ino=431095 scontext=system_u:system_r:system_dbusd_t
389 tcontext=system_u:object_r:default_t tclass=file
390 Jun 23 08:32:09 localhost kernel: [ 73.388517] type=1400
391 audit(1308810729.873:23): avc: denied { sys_ptrace } for pid=5237
392 comm="backlighthelper" capability=19
393 scontext=system_u:system_r:system_dbusd_t
394 tcontext=system_u:system_r:system_dbusd_t tclass=capability
395 Jun 23 08:32:11 localhost kernel: [ 74.992397] type=1400
396 audit(1308810731.477:24): avc: denied { setsched } for pid=5234
397 comm="mount" scontext=system_u:system_r:system_dbusd_t
398 tcontext=system_u:system_r:kernel_t tclass=process
399 Jun 23 08:32:11 localhost kernel: [ 74.992466] type=1400
400 audit(1308810731.477:25): avc: denied { write } for pid=5234
401 comm="mount" name="/" dev=dm-1 ino=2
402 scontext=system_u:system_r:system_dbusd_t
403 tcontext=system_u:object_r:root_t tclass=dir
404 Jun 23 09:02:08 localhost kernel: [ 1872.104693] type=1400
405 audit(1308812528.589:57): avc: denied { read } for pid=5685
406 comm="udisks-helper-a" name="sdb" dev=tmpfs ino=5988
407 scontext=system_u:system_r:system_dbusd_t
408 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
409 Jun 23 09:02:08 localhost kernel: [ 1872.107313] type=1400
410 audit(1308812528.592:58): avc: denied { read } for pid=5686
411 comm="udisks-helper-a" name="sdc" dev=tmpfs ino=5989
412 scontext=system_u:system_r:system_dbusd_t
413 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
414 Jun 23 09:02:08 localhost kernel: [ 1872.111068] type=1400
415 audit(1308812528.596:59): avc: denied { read } for pid=5687
416 comm="udisks-helper-a" name="sdd" dev=tmpfs ino=6019
417 scontext=system_u:system_r:system_dbusd_t
418 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
419 Jun 23 09:32:08 localhost kernel: [ 3672.052754] type=1400
420 audit(1308814328.537:60): avc: denied { read } for pid=6023
421 comm="udisks-helper-a" name="sdb" dev=tmpfs ino=5988
422 scontext=system_u:system_r:system_dbusd_t
423 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
424 Jun 23 09:32:08 localhost kernel: [ 3672.055482] type=1400
425 audit(1308814328.540:61): avc: denied { read } for pid=6024
426 comm="udisks-helper-a" name="sdc" dev=tmpfs ino=5989
427 scontext=system_u:system_r:system_dbusd_t
428 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
429 Jun 23 09:32:08 localhost kernel: [ 3672.059116] type=1400
430 audit(1308814328.544:62): avc: denied { read } for pid=6025
431 comm="udisks-helper-a" name="sdd" dev=tmpfs ino=6019
432 scontext=system_u:system_r:system_dbusd_t
433 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
434 Jun 23 10:02:08 localhost kernel: [ 5472.102715] type=1400
435 audit(1308816128.587:63): avc: denied { read } for pid=6026
436 comm="udisks-helper-a" name="sdb" dev=tmpfs ino=5988
437 scontext=system_u:system_r:system_dbusd_t
438 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
439 Jun 23 10:02:08 localhost kernel: [ 5472.105460] type=1400
440 audit(1308816128.590:64): avc: denied { read } for pid=6027
441 comm="udisks-helper-a" name="sdc" dev=tmpfs ino=5989
442 scontext=system_u:system_r:system_dbusd_t
443 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
444 Jun 23 10:02:08 localhost kernel: [ 5472.105868] type=1400
445 audit(1308816128.590:65): avc: denied { read } for pid=6028
446 comm="udisks-helper-a" name="sdd" dev=tmpfs ino=6019
447 scontext=system_u:system_r:system_dbusd_t
448 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
449 Jun 23 10:32:08 localhost kernel: [ 7272.030120] type=1400
450 audit(1308817928.515:66): avc: denied { read } for pid=6364
451 comm="udisks-helper-a" name="sdb" dev=tmpfs ino=5988
452 scontext=system_u:system_r:system_dbusd_t
453 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
454 Jun 23 10:32:08 localhost kernel: [ 7272.032737] type=1400
455 audit(1308817928.517:67): avc: denied { read } for pid=6365
456 comm="udisks-helper-a" name="sdc" dev=tmpfs ino=5989
457 scontext=system_u:system_r:system_dbusd_t
458 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
459 Jun 23 10:32:08 localhost kernel: [ 7272.034976] type=1400
460 audit(1308817928.519:68): avc: denied { read } for pid=6366
461 comm="udisks-helper-a" name="sdd" dev=tmpfs ino=6019
462 scontext=system_u:system_r:system_dbusd_t
463 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
464 Jun 23 11:02:08 localhost kernel: [ 9072.102776] type=1400
465 audit(1308819728.587:69): avc: denied { read } for pid=6702
466 comm="udisks-helper-a" name="sdb" dev=tmpfs ino=5988
467 scontext=system_u:system_r:system_dbusd_t
468 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
469 Jun 23 11:02:08 localhost kernel: [ 9072.105599] type=1400
470 audit(1308819728.590:70): avc: denied { read } for pid=6703
471 comm="udisks-helper-a" name="sdc" dev=tmpfs ino=5989
472 scontext=system_u:system_r:system_dbusd_t
473 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
474 Jun 23 11:02:08 localhost kernel: [ 9072.105907] type=1400
475 audit(1308819728.590:71): avc: denied { read } for pid=6704
476 comm="udisks-helper-a" name="sdd" dev=tmpfs ino=6019
477 scontext=system_u:system_r:system_dbusd_t
478 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
479 Jun 23 11:32:08 localhost kernel: [10872.030082] type=1400
480 audit(1308821528.515:72): avc: denied { read } for pid=6705
481 comm="udisks-helper-a" name="sdb" dev=tmpfs ino=5988
482 scontext=system_u:system_r:system_dbusd_t
483 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
484 Jun 23 11:32:08 localhost kernel: [10872.032816] type=1400
485 audit(1308821528.517:73): avc: denied { read } for pid=6706
486 comm="udisks-helper-a" name="sdc" dev=tmpfs ino=5989
487 scontext=system_u:system_r:system_dbusd_t
488 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
489 Jun 23 11:32:08 localhost kernel: [10872.034959] type=1400
490 audit(1308821528.519:74): avc: denied { read } for pid=6707
491 comm="udisks-helper-a" name="sdd" dev=tmpfs ino=6019
492 scontext=system_u:system_r:system_dbusd_t
493 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
494 Jun 23 12:02:08 localhost kernel: [12672.030117] type=1400
495 audit(1308823328.515:75): avc: denied { read } for pid=7043
496 comm="udisks-helper-a" name="sdb" dev=tmpfs ino=5988
497 scontext=system_u:system_r:system_dbusd_t
498 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
499 Jun 23 12:02:08 localhost kernel: [12672.032815] type=1400
500 audit(1308823328.517:76): avc: denied { read } for pid=7044
501 comm="udisks-helper-a" name="sdc" dev=tmpfs ino=5989
502 scontext=system_u:system_r:system_dbusd_t
503 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
504 Jun 23 12:02:08 localhost kernel: [12672.034887] type=1400
505 audit(1308823328.519:77): avc: denied { read } for pid=7045
506 comm="udisks-helper-a" name="sdd" dev=tmpfs ino=6019
507 scontext=system_u:system_r:system_dbusd_t
508 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
509 Jun 23 12:21:20 localhost kernel: [13824.223192] type=1400
510 audit(1308824480.708:78): avc: denied { read } for pid=7061 comm="rc"
511 name="inactive" dev=tmpfs ino=4195 scontext=system_u:system_r:openvpn_t
512 tcontext=system_u:object_r:initrc_state_t tclass=dir
513 Jun 23 12:21:20 localhost kernel: [13824.223235] type=1400
514 audit(1308824480.708:79): avc: denied { read } for pid=7061 comm="rc"
515 name="started" dev=tmpfs ino=4193 scontext=system_u:system_r:openvpn_t
516 tcontext=system_u:object_r:initrc_state_t tclass=dir
517 Jun 23 12:31:30 localhost kernel: [14434.278297] type=1400
518 audit(1308825090.763:80): avc: denied { remove_name } for pid=4844
519 comm="named" name="session.key" dev=dm-1 ino=393268
520 scontext=system_u:system_r:named_t tcontext=system_u:object_r:default_t
521 tclass=dir
522 Jun 23 12:31:30 localhost kernel: [14434.282222] type=1400
523 audit(1308825090.767:81): avc: denied { remove_name } for pid=4844
524 comm="named" name="named.pid" dev=dm-1 ino=393267
525 scontext=system_u:system_r:named_t tcontext=system_u:object_r:default_t
526 tclass=dir
527 Jun 23 12:32:08 localhost kernel: [14472.033325] type=1400
528 audit(1308825128.518:82): avc: denied { read } for pid=7583
529 comm="udisks-helper-a" name="sdb" dev=tmpfs ino=5988
530 scontext=system_u:system_r:system_dbusd_t
531 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
532 Jun 23 12:32:08 localhost kernel: [14472.036627] type=1400
533 audit(1308825128.521:83): avc: denied { read } for pid=7584
534 comm="udisks-helper-a" name="sdc" dev=tmpfs ino=5989
535 scontext=system_u:system_r:system_dbusd_t
536 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
537 Jun 23 12:32:08 localhost kernel: [14472.038606] type=1400
538 audit(1308825128.523:84): avc: denied { read } for pid=7585
539 comm="udisks-helper-a" name="sdd" dev=tmpfs ino=6019
540 scontext=system_u:system_r:system_dbusd_t
541 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
542 Jun 23 12:45:57 localhost kernel: [15301.235793] type=1400
543 audit(1308825957.720:86): avc: denied { getattr } for pid=8106
544 comm="rc" path="/lib64/rc/init.d/rc.stopping" dev=tmpfs ino=2069206
545 scontext=system_u:system_r:openvpn_t
546 tcontext=system_u:object_r:initrc_state_t tclass=dir
547 Jun 23 12:45:58 localhost kernel: [15301.844610] type=1400
548 audit(1308825958.329:87): avc: denied { unlink } for pid=4711
549 comm="dhcpcd" name="dhcpcd.sock" dev=dm-1 ino=262251
550 scontext=system_u:system_r:dhcpc_t tcontext=system_u:object_r:var_run_t
551 tclass=sock_file
552 Jun 23 12:45:58 localhost kernel: [15301.885416] type=1400
553 audit(1308825958.370:88): avc: denied { write } for pid=8442
554 comm="iptables-save" path="/var/lib/iptables/rules-save" dev=dm-1
555 ino=265407 scontext=system_u:system_r:iptables_t
556 tcontext=system_u:object_r:var_lib_t tclass=file
557 Jun 23 18:15:43 localhost kernel: [ 49.588313] type=1400
558 audit(1308845743.550:3): avc: denied { write } for pid=5016 comm="rc"
559 name="exclusive" dev=tmpfs ino=4197 scontext=system_u:system_r:openvpn_t
560 tcontext=system_u:object_r:initrc_state_t tclass=dir
561 Jun 23 18:15:43 localhost kernel: [ 49.588320] type=1400
562 audit(1308845743.550:4): avc: denied { add_name } for pid=5016
563 comm="rc" name="openvpn" scontext=system_u:system_r:openvpn_t
564 tcontext=system_u:object_r:initrc_state_t tclass=dir
565 Jun 23 18:15:43 localhost kernel: [ 49.588332] type=1400
566 audit(1308845743.550:5): avc: denied { create } for pid=5016
567 comm="rc" name="openvpn" scontext=system_u:system_r:openvpn_t
568 tcontext=system_u:object_r:initrc_state_t tclass=file
569 Jun 23 18:15:43 localhost kernel: [ 49.588343] type=1400
570 audit(1308845743.550:6): avc: denied { write } for pid=5016 comm="rc"
571 name="openvpn" dev=tmpfs ino=9008 scontext=system_u:system_r:openvpn_t
572 tcontext=system_u:object_r:initrc_state_t tclass=file
573 Jun 23 18:15:43 localhost kernel: [ 49.588352] type=1400
574 audit(1308845743.550:7): avc: denied { lock } for pid=5016 comm="rc"
575 path="/lib64/rc/init.d/exclusive/openvpn" dev=tmpfs ino=9008
576 scontext=system_u:system_r:openvpn_t
577 tcontext=system_u:object_r:initrc_state_t tclass=file
578 Jun 23 18:15:43 localhost kernel: [ 49.588375] type=1400
579 audit(1308845743.550:8): avc: denied { create } for pid=5016
580 comm="rc" name="openvpn" scontext=system_u:system_r:openvpn_t
581 tcontext=system_u:object_r:initrc_state_t tclass=lnk_file
582 Jun 23 18:15:43 localhost kernel: [ 49.588402] type=1400
583 audit(1308845743.550:9): avc: denied { remove_name } for pid=5016
584 comm="rc" name="openvpn" dev=tmpfs ino=8396
585 scontext=system_u:system_r:openvpn_t
586 tcontext=system_u:object_r:initrc_state_t tclass=dir
587 Jun 23 18:15:43 localhost kernel: [ 49.588409] type=1400
588 audit(1308845743.550:10): avc: denied { unlink } for pid=5016
589 comm="rc" name="openvpn" dev=tmpfs ino=8396
590 scontext=system_u:system_r:openvpn_t
591 tcontext=system_u:object_r:initrc_state_t tclass=lnk_file
592 Jun 23 18:15:43 localhost kernel: [ 49.590573] type=1400
593 audit(1308845743.552:11): avc: denied { read } for pid=5016 comm="rc"
594 name="scheduled" dev=tmpfs ino=4198 scontext=system_u:system_r:openvpn_t
595 tcontext=system_u:object_r:initrc_state_t tclass=dir
596 Jun 23 18:15:53 localhost kernel: [ 59.673716] type=1400
597 audit(1308845753.635:14): avc: denied { read } for pid=5173
598 comm="hdparm" name="sda" dev=tmpfs ino=5916
599 scontext=system_u:system_r:system_dbusd_t
600 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
601 Jun 23 18:15:53 localhost kernel: [ 59.673730] type=1400
602 audit(1308845753.635:15): avc: denied { open } for pid=5173
603 comm="hdparm" name="sda" dev=tmpfs ino=5916
604 scontext=system_u:system_r:system_dbusd_t
605 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
606 Jun 23 18:15:53 localhost kernel: [ 59.673823] type=1400
607 audit(1308845753.635:16): avc: denied { ioctl } for pid=5173
608 comm="hdparm" path="/dev/sda" dev=tmpfs ino=5916
609 scontext=system_u:system_r:system_dbusd_t
610 tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file
611 Jun 23 18:15:54 localhost kernel: [ 60.859364] type=1400
612 audit(1308845754.821:17): avc: denied { getattr } for pid=5194
613 comm="backlighthelper" path="/.config/Trolltech.conf" dev=dm-1
614 ino=431095 scontext=system_u:system_r:system_dbusd_t
615 tcontext=system_u:object_r:default_t tclass=file
616 Jun 23 18:15:54 localhost kernel: [ 60.859487] type=1400
617 audit(1308845754.821:18): avc: denied { read } for pid=5194
618 comm="backlighthelper" name="Trolltech.conf" dev=dm-1 ino=431095
619 scontext=system_u:system_r:system_dbusd_t
620 tcontext=system_u:object_r:default_t tclass=file
621 Jun 23 18:15:54 localhost kernel: [ 60.859518] type=1400
622 audit(1308845754.821:19): avc: denied { open } for pid=5194
623 comm="backlighthelper" name="Trolltech.conf" dev=dm-1 ino=431095
624 scontext=system_u:system_r:system_dbusd_t
625 tcontext=system_u:object_r:default_t tclass=file
626 Jun 23 18:15:54 localhost kernel: [ 60.859672] type=1400
627 audit(1308845754.821:20): avc: denied { lock } for pid=5194
628 comm="backlighthelper" path="/.config/Trolltech.conf" dev=dm-1
629 ino=431095 scontext=system_u:system_r:system_dbusd_t
630 tcontext=system_u:object_r:default_t tclass=file
631 Jun 23 18:15:54 localhost kernel: [ 60.913152] type=1400
632 audit(1308845754.875:21): avc: denied { sys_ptrace } for pid=5194
633 comm="backlighthelper" capability=19
634 scontext=system_u:system_r:system_dbusd_t
635 tcontext=system_u:system_r:system_dbusd_t tclass=capability
636 Jun 23 18:15:56 localhost kernel: [ 62.858743] type=1400
637 audit(1308845756.820:22): avc: denied { setsched } for pid=5192
638 comm="mount" scontext=system_u:system_r:system_dbusd_t
639 tcontext=system_u:system_r:kernel_t tclass=process
640 Jun 23 18:15:56 localhost kernel: [ 62.858808] type=1400
641 audit(1308845756.820:23): avc: denied { write } for pid=5192
642 comm="mount" name="/" dev=dm-1 ino=2
643 scontext=system_u:system_r:system_dbusd_t
644 tcontext=system_u:object_r:root_t tclass=dir
645
646
647 --
648 http://www.fastmail.fm - One of many happy users:
649 http://www.fastmail.fm/docs/quotes.html