Research
.
Skip Search Box

SELinux Mailing List

Re: /dev/pts/x use denials

From: Daniel J Walsh <dwalsh_at_redhat.com>
Date: Mon, 04 Apr 2005 11:09:08 -0400


Ivan Gyurdiev wrote:

>On Sun, 2005-04-03 at 19:00 -0400, Ivan Gyurdiev wrote:
>
>
>>Strange denials:
>>
>>/dev/pts/2 has context: sysadm_tmp_t.
>>Those happen intermittently, but I can't figure out when exactly.
>>I am logged in as a regular user, but su-ed to root. Usually accompanied
>>by a dac_override.
>>
>>
>
>It's sometimes followed by a dac_override - not all the time.
>Here's something reproducible:
>
>If I su to root, launch tvtime/mplayer/whatever, then make load
>the selinux policy, I get use denial on /dev/pts. Then if I launch
>the same program - no use denial. Then I make load the policy again,
>launch program, and I get a use denial.
>
>
>

If you are running in permissive mode, you only get the denial once. When you
reload the policy it clears the flag.

Dan

-- 



--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.
Received on Mon 4 Apr 2005 - 11:15:32 EDT
 

Date Posted: Jan 15, 2009 | Last Modified: Jan 15, 2009 | Last Reviewed: Jan 15, 2009

 
bottom

National Security Agency / Central Security Service