Gentoo Archives: gentoo-hardened

From: Chris PeBenito <pebenito@g.o>
To: gentoo-hardened@l.g.o
Subject: Re: [gentoo-hardened] so many sandbnox violation even in permissive mode
Date: Thu, 14 Jun 2007 14:41:25
Message-Id: 1181831883.9375.13.camel@defiant.pebenito.net
In Reply to: [gentoo-hardened] so many sandbnox violation even in permissive mode by GNUtoo@no-log.org
1 On Thu, 2007-06-14 at 14:37 +0200, GNUtoo@××××××.org wrote:
2 > i wanted to install plone but many packages failled due to sandbox
3 > violation...
4 > and before that i tried another package that has given me a sandbox
5 > violation on my selinux box but not on my non-selinux box
6 > so mabe it's related to selinux
7 > as an example:
8 > >>> Test phase [not enabled]: net-zope/portaltransforms-1.0.4
9 >
10 > >>> Install portaltransforms-1.0.4 into
11 > /var/tmp/portage/net-zope/portaltransforms-1.0.4/image/ category
12 > net-zope
13 > ACCESS DENIED open_wr: /proc/self/task/4923/attr/fscreate
14 > cp: cannot set setfscreatecon `user_u:object_r:portage_tmp_t': Permission
15 > denied
16 > ACCESS DENIED open_wr: /proc/self/task/4923/attr/fscreate
17 > cp: cannot set setfscreatecon `user_u:object_r:portage_tmp_t': Permission
18 > denied
19 > ACCESS DENIED open_wr: /proc/self/task/4923/attr/fscreate
20 > cp: cannot set setfscreatecon `user_u:object_r:portage_tmp_t': Permission
21 > denied
22
23 I applied a fix to the SELinux profile which should fix this.
24
25 --
26 Chris PeBenito
27 <pebenito@g.o>
28 Developer,
29 Hardened Gentoo Linux
30
31 Public Key: http://pgp.mit.edu:11371/pks/lookup?op=get&search=0xE6AF9243
32 Key fingerprint = B0E6 877A 883F A57A 8E6A CB00 BC8E E42D E6AF 9243

Attachments

File name MIME type
signature.asc application/pgp-signature