FAQ Search Today's Posts Mark Forums Read
» Video Reviews

» Linux Archive

Linux-archive is a website aiming to archive linux email lists and to make them easily accessible for linux users/developers.


» Sponsor

» Partners

» Sponsor

Go Back   Linux Archive > Redhat > Fedora SELinux Support

 
 
LinkBack Thread Tools
 
Old 12-12-2007, 03:55 PM
Matt Thompson
 
Default FC8: selinux stops cupsd from starting

I am having a problem with cupsd on my FC8 box. Namely, it only seems
to want to start on reboot. If I try to start it later I get:


# service cups start
Starting cups: /bin/bash: /usr/sbin/cupsd: Permission denied
[FAILED]

and then audit.log sayeth:
type=SELINUX_ERR msg=audit(1197478409.420:673): security_compute_sid:
invalid context user_u:system_r:cupsd_t:s0-s0:c0.c1023 for
scontext=user_u:system_r:initrc_t:s0
tcontext=system_ubject_r:cupsd_exec_t:s0 tclass=process


This seems to be the same bug as in #390391:
https://bugzilla.redhat.com/show_bug.cgi?id=390391

but none of the fixes in that seemed to work.

More detail can be found at the bug, but I thought I'd ask here in case
the answer was well known and my bugzilla-search-fu was lacking.


Thanks for any help,
Matt Thompson

--
Matt Thompson, PhD
Naval Research Laboratory
202-767-2160

--
fedora-selinux-list mailing list
fedora-selinux-list@redhat.com
https://www.redhat.com/mailman/listinfo/fedora-selinux-list
 
Old 12-13-2007, 08:18 PM
Daniel J Walsh
 
Default FC8: selinux stops cupsd from starting

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Matt Thompson wrote:
> I am having a problem with cupsd on my FC8 box. Namely, it only seems
> to want to start on reboot. If I try to start it later I get:
>
> # service cups start
> Starting cups: /bin/bash: /usr/sbin/cupsd: Permission denied
> [FAILED]
>
> and then audit.log sayeth:
> type=SELINUX_ERR msg=audit(1197478409.420:673): security_compute_sid:
> invalid context user_u:system_r:cupsd_t:s0-s0:c0.c1023 for
> scontext=user_u:system_r:initrc_t:s0
> tcontext=system_ubject_r:cupsd_exec_t:s0 tclass=process
>
> This seems to be the same bug as in #390391:
> https://bugzilla.redhat.com/show_bug.cgi?id=390391
>
> but none of the fixes in that seemed to work.
>
> More detail can be found at the bug, but I thought I'd ask here in case
> the answer was well known and my bugzilla-search-fu was lacking.
>
> Thanks for any help,
> Matt Thompson
>
That bug was resolved. Policy 68 should correct the default file
context for the administrator, which will allow them to start and stop
the service.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.7 (GNU/Linux)
Comment: Using GnuPG with Fedora - http://enigmail.mozdev.org

iD8DBQFHYaGmrlYvE4MpobMRAspSAKCEQpSDZIuKukX0zkbQXm zNup6eegCffin0
X+VCPNUMtGFDX+QT4nkzwPQ=
=tE7v
-----END PGP SIGNATURE-----

--
fedora-selinux-list mailing list
fedora-selinux-list@redhat.com
https://www.redhat.com/mailman/listinfo/fedora-selinux-list
 

Thread Tools




All times are GMT. The time now is 11:34 AM.

VBulletin, Copyright ©2000 - 2014, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO ©2007, Crawlability, Inc.
Copyright 2007 - 2008, www.linux-archive.org