From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from lists.gentoo.org ([140.105.134.102] helo=robin.gentoo.org) by nuthatch.gentoo.org with esmtp (Exim 4.60) (envelope-from ) id 1FhoFm-0001hb-AK for garchives@archives.gentoo.org; Sun, 21 May 2006 13:45:54 +0000 Received: from robin.gentoo.org (localhost [127.0.0.1]) by robin.gentoo.org (8.13.6/8.13.6) with SMTP id k4LDf3at014665; Sun, 21 May 2006 13:41:03 GMT Received: from nerdig.org (codejunky.org [217.160.206.82]) by robin.gentoo.org (8.13.6/8.13.6) with ESMTP id k4LDf25o027538 for ; Sun, 21 May 2006 13:41:02 GMT Received: (qmail 26487 invoked from network); 21 May 2006 15:41:03 +0200 Received: from c208084.adsl.hansenet.de (HELO codejunky.org) (jan@codejunky.org@213.39.208.84) by codejunky.org with AES256-SHA encrypted SMTP; 21 May 2006 15:41:03 +0200 From: Jan Meier To: gentoo-hardened@lists.gentoo.org Subject: [gentoo-hardened] SELinux problem -> avc: denied {execmem} Date: Sun, 21 May 2006 15:40:57 +0200 User-Agent: KMail/1.9.1 Precedence: bulk List-Post: List-Help: List-Unsubscribe: List-Subscribe: List-Id: Gentoo Linux mail X-BeenThere: gentoo-hardened@gentoo.org Reply-to: gentoo-hardened@lists.gentoo.org MIME-Version: 1.0 Content-Type: multipart/signed; boundary="nextPart2138159.i6TP0YsgxX"; protocol="application/pgp-signature"; micalg=pgp-sha1 Content-Transfer-Encoding: 7bit Message-Id: <200605211541.00448.jan@codejunky.org> X-Archives-Salt: 0061e6c1-00f6-4649-8a97-2c33ed3707d7 X-Archives-Hash: af72fbabb8a3cb68df0da23e6cc3b66e --nextPart2138159.i6TP0YsgxX Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: quoted-printable Content-Disposition: inline Hello, I am running SELinux and at boot time I get the following avc: denied=20 messages: May 21 16:01:40 jeeves audit(1148220069.887:0): avc: denied { execmem } f= or =20 pid=3D1 comm=3Dinit scontext=3Dsystem_u:system_r:kernel_t=20 tcontext=3Dsystem_u:system_r:kernel_t tclass=3Dprocess May 21 16:01:40 jeeves audit(1148220069.905:0): avc: denied { execmem } f= or =20 pid=3D1 comm=3Dinit scontext=3Dsystem_u:system_r:init_t=20 tcontext=3Dsystem_u:system_r:init_t tclass=3Dprocess May 21 16:01:40 jeeves audit(1148220070.475:0): avc: denied { execmem } f= or =20 pid=3D896 comm=3Drc scontext=3Dsystem_u:system_r:initrc_t=20 tcontext=3Dsystem_u:system_r:initrc_t tclass=3Dprocess May 21 16:01:40 jeeves audit(1148220070.920:0): avc: denied { execmem } f= or =20 pid=3D904 comm=3Dmount scontext=3Dsystem_u:system_r:mount_t=20 tcontext=3Dsystem_u:system_r:mount_t tclass=3Dprocess May 21 16:01:40 jeeves audit(1148220071.457:0): avc: denied { execmem } f= or =20 pid=3D934 comm=3Dswapon scontext=3Dsystem_u:system_r:fsadm_t=20 tcontext=3Dsystem_u:system_r:fsadm_t tclass=3Dprocess May 21 16:01:40 jeeves audit(1148220072.480:0): avc: denied { execmem } f= or =20 pid=3D974 comm=3Dmodules-update scontext=3Dsystem_u:system_r:update_modules= _t=20 tcontext=3Dsystem_u:system_r:update_modules_t tclass=3Dprocess What can I do to get rid of them? When I execute `setenforce 1` I get a "Killed" after each command I execute= ,=20 does this have something to do with the denied messages? Best regards, Jan =2D-=20 GPG-Key-ID: BC3D36E0 --nextPart2138159.i6TP0YsgxX Content-Type: application/pgp-signature -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.2.2 (GNU/Linux) iD8DBQBEcG3szAyn0bw9NuARAo6rAKCx6FXKJIzac7VirF+QdkIPg9PqywCcDWzE zsgw72pzNb4iJy8ie/n4AOA= =pjtF -----END PGP SIGNATURE----- --nextPart2138159.i6TP0YsgxX-- -- gentoo-hardened@gentoo.org mailing list