Gentoo Archives: gentoo-hardened

From: Chris PeBenito <pebenito@g.o>
To: gentoo-hardened@l.g.o
Subject: Re: [gentoo-hardened] problem, Could not access sandbox base file
Date: Mon, 30 Jul 2007 03:18:49
Message-Id: 1185765403.24526.21.camel@gorn.pebenito.net
In Reply to: Re: [gentoo-hardened] problem, Could not access sandbox base file by Toni Kaufmann
1 On Mon, 2007-07-30 at 00:25 +0200, Toni Kaufmann wrote:
2 > Works for me. Thank you very much!
3 >
4 > Shouldn't this be added to the Gentoo-Manual?
5
6 No, you normally shouldn't be in this position. The only way I can
7 think of you getting to this is if you had FEATURES=-loadpolicy when
8 merging base-policy.
9
10 > Chris PeBenito wrote:
11 > > On Sun, 2007-07-29 at 15:49 +0200, Toni Kaufmann wrote:
12 > > > Hm I have the same problem.
13 > > > I watched the kernel messages while executing 'semodule -B', but nothing
14 > > apeared.
15 > >
16 > > Try `semodule -b /usr/share/selinux/strict/base.pp`
17 > >
18 > > > > On Sun, 2007-07-29 at 19:49 +1200, John Huttley wrote:
19 > > > > > I've got this....
20 > > > > > # semodule -B
21 > > > > > libsemanage.semanage_link_sandbox: Could not access sandbox base
22 > > file
23 > > > > > /etc/selinux/strict/modules/tmp/base.pp.
24 > > > > > semodule: Failed!
25 > > > > >
26 > > > > > .. problem also.
27 > > > > >
28 > > > > > However I have not been able to get it work in the manner described
29 > > > > below..
30 > > > > > I'm using the selinux/2006.1 policy with a 2.6.20-hardened-r5
31 > > kernel.
32 > > > >
33 > > > > Are there any denial messages or any other SELinux kernel messages?
34
35 --
36 Chris PeBenito
37 <pebenito@g.o>
38 Developer,
39 Hardened Gentoo Linux
40
41 Public Key: http://pgp.mit.edu:11371/pks/lookup?op=get&search=0xE6AF9243
42 Key fingerprint = B0E6 877A 883F A57A 8E6A CB00 BC8E E42D E6AF 9243

Attachments

File name MIME type
signature.asc application/pgp-signature