Gentoo Archives: gentoo-hardened

From: John Huttley <John@×××××××××××××××.nz>
To: gentoo-hardened@l.g.o
Subject: Re: [gentoo-hardened] problem, Could not access sandbox base file
Date: Sun, 29 Jul 2007 07:51:13
Message-Id: 46AC466F.8000306@mib-infotech.co.nz
In Reply to: RE: [gentoo-hardened] problem by "Łukasz Sochanowski - Shipmedics"
1 Hi,
2
3 I've got this....
4
5 # semodule -B
6 libsemanage.semanage_link_sandbox: Could not access sandbox base file
7 /etc/selinux/strict/modules/tmp/base.pp.
8 semodule: Failed!
9
10 .. problem also.
11
12 However I have not been able to get it work in the manner described below..
13 I'm using the selinux/2006.1 policy with a 2.6.20-hardened-r5 kernel.
14
15 Does anyone have any other suggestions?
16
17 --john
18
19
20
21
22 Łukasz Sochanowski - Shipmedics wrote:
23 > it work thanks a lot
24 >
25 > --
26 > Łukasz Sochanowski
27 > IT Manager
28 >
29 > mobile: +48 605102382
30 > email: lukasz.sochanowski@××××××××××.com
31 > IT Division email: it@××××××××××.com
32 > IT Division tel.: +48 91 485 18 16
33 > IT Division fax: +48 91 880 80 74
34 > SHIPMEDICS Ltd 24/7 Customer support hotline:
35 > +48 888 MEDICS (+48 888 633427)
36 >
37 > *********************************************
38 > SHIPMEDICS Ltd.
39 > ul. Wisniowa 34a
40 > 71-496 Szczecin; POLAND
41 > tel.: +48 91 485 18 18
42 > fax: +48 91 485 18 17
43 > email: shipmedics@××××××××××.com
44 > www.shipmedics.com
45 >
46 > VAT No./NIP: PL8512897664
47 > REGON: 812742693
48 > Capital/Kapital zakladowy: 125 000 PLN
49 > Court Name/Sad Rejestrowy:
50 > District Court in Szczecin/Sad Rejonowy w Szczecinie XVII Commercial Division of the National Court Register/ XVII Wydzial Gospodarczy Krajowego Rejestru Sadowego KRS Registration No./KRS: 0000226629
51 > *********************************************
52 >
53 > This e-mail and any files transmitted with it are confidential and intended solely for the use of the individual or entity to whom they are addressed. If you have received this e-mail in error, please destroy this message and kindly notify the sender by reply e-mail.
54 >
55 >
56 >
57 > -----Original Message-----
58 > From: Petre Rodan [mailto:kaiowas@g.o]
59 > Sent: Tuesday, July 10, 2007 12:36 PM
60 > To: gentoo-hardened@l.g.o
61 > Subject: Re: [gentoo-hardened] problem
62 >
63 >
64 > Hi,
65 >
66 > On Tue, Jul 10, 2007 at 11:35:31AM +0200, Łukasz Sochanowski - Shipmedics wrote:
67 >
68 >> Hi,
69 >>
70 >> I have a problem concerning SElinux on gentoo.
71 >> I`ve installed selinux from profile 2007.0 with managed policy, but
72 >> when I try to load or reload modules, a problem emerges:
73 >>
74 >> # semodule -B
75 >> libsemanage.semanage_link_sandbox: Could not access sandbox base file
76 >> /etc/selinux/strict/modules/tmp/base.pp.
77 >> semodule: Failed!
78 >>
79 >> # emerge selinux-base-policy
80 >> * Inserting base module into strict module store.
81 >> libsemanage.semanage_exec_prog: Child process /usr/sbin/load_policy
82 >> did not exit cleanly.
83 >> libsemanage.semanage_reload_policy: load_policy returned error code -1..
84 >> libsemanage.semanage_install_active: Could not copy
85 >> /etc/selinux/strict/modules/active/policy.kern to
86 >> /etc/selinux/strict/policy/policy.21.
87 >> semodule: Failed!
88 >> * Inserting base module into targeted module store.
89 >> libsemanage.semanage_exec_prog: Child process /sbin/setfiles did not
90 >> exit cleanly.
91 >> libsemanage.semanage_install_active: setfiles returned error code -1.
92 >> libsemanage.semanage_install_active: Could not copy
93 >> /etc/selinux/targeted/modules/active/policy.kern to
94 >> /etc/selinux/targeted/policy/policy.21.
95 >> semodule: Failed!
96 >>
97 >
98 > sounds like http://bugs.gentoo.org/show_bug.cgi?id=184520
99 >
100 > try to emerge portage-2.1.2.2 and then re-emerge your base-policy
101 >
102 >
103 >
104 >> I really don`t know what to do now. Can someone help me fix this ?
105 >>
106 >> Regards
107 >>
108 >> max239
109 >>
110 >> --
111 >> gentoo-hardened@g.o mailing list
112 >>
113 >
114 > cheers,
115 > peter
116 >
117 > --
118 > petre rodan
119 > <kaiowas@g.o>
120 > Developer,
121 > Hardened Gentoo Linux
122 >
123 >

Replies

Subject Author
Re: [gentoo-hardened] problem, Could not access sandbox base file Chris PeBenito <pebenito@g.o>