[prev in list] [next in list] [prev in thread] [next in thread] 

List:       linux-cifs-client
Subject:    [linux-cifs-client] Selinux out smarted itself. "Multiple different
From:       "Roger Salisbury" <rgsalisbury () exemail ! com ! au>
Date:       2007-11-26 7:06:08
Message-ID: 00be01c82ffa$d220bef0$8b00a8c0 () rogersxp
[Download RAW message or body]

[Attachment #2 (multipart/alternative)]


----------- a challenge for selinux------------

Hi fellow samba/selinux uses ...
I know this is a samba list but my selinux probs have been answered here extremmely \
well.



Selinux commands complain & refuse to work.

Tradition selinux commands don't work. IE chcon, restorecon , fixfiles, setfiles  \
etc..I Need an *expert* here, .......... 

my /boot directory has :

> boot_t:

and

> home_root_t:

.......... together labled --- see below.

and I can't fix it.  do we have to edit the "inode" directly??

Having two types on one file I believe should *never* happen but -- it has.

Should be one  ":boot_t:"  or the other ":home_root_t:"  but never *both*!

I think I know how it happened -- but that's not the issue right now -- how do you \
fix it??

Thx  
Roger Salisbury


Below is the setfiles display:


/etc/selinux/targeted/contexts/files/file_contexts: Multiple same specifications for \
/boot/lost\+found/.*.

/etc/selinux/targeted/contexts/files/file_contexts: Multiple different specifications \
for /boot  (system_u:object_r:home_root_t:s0 and system_u:object_r:boot_t:s0).

/etc/selinux/targeted/contexts/files/file_contexts: Multiple same specifications for \
/boot/\.journal.

/etc/selinux/targeted/contexts/files/file_contexts: Multiple same specifications for \
/boot/lost\+found.

setfiles: labeling files under /boot

setfiles:  labeling files under /boot

matchpathcon_filespec_eval:  hash table stats: 28 elements, 28/65536 buckets used, \
longest chain length 1

setfiles:  Done.


[Attachment #5 (text/html)]

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<HTML><HEAD>
<META http-equiv=Content-Type content="text/html; charset=iso-8859-1">
<META content="MSHTML 6.00.6000.16544" name=GENERATOR>
<STYLE></STYLE>
</HEAD>
<BODY bgColor=#f4f0e8>
<DIV><FONT face=Arial size=2>----------- a challenge for 
selinux------------</FONT></DIV>
<DIV><FONT face=Arial size=2></FONT>&nbsp;</DIV>
<DIV><FONT face=Arial size=2>Hi fellow samba/selinux uses ...</FONT></DIV>
<DIV><FONT face=Arial size=2>I know this is a samba list but my selinux probs 
have been answered here extremmely well.</FONT></DIV>
<DIV><FONT face=Arial size=2></FONT>&nbsp;</DIV>
<DIV><FONT face=Arial size=2></FONT>&nbsp;</DIV>
<DIV><FONT face=Arial size=2></FONT>&nbsp;</DIV>
<DIV><FONT face=Arial size=2>Selinux commands complain &amp; refuse to 
work.</FONT></DIV>
<DIV><FONT face=Arial size=2></FONT>&nbsp;</DIV>
<DIV><FONT face=Arial size=2>Tradition selinux commands don't work. IE chcon, 
restorecon , fixfiles, setfiles&nbsp; etc..I Need an *expert* 
here,&nbsp;.......... </FONT></DIV>
<DIV><FONT face=Arial size=2></FONT>&nbsp;</DIV>
<DIV><FONT face=Arial size=2>my /boot directory has :</FONT></DIV>
<DIV><FONT face=Arial size=2></FONT>&nbsp;</DIV>
<DIV><FONT face=Arial size=2><STRONG>:boot_t:</STRONG></FONT></DIV>
<DIV><STRONG><FONT face=Arial size=2></FONT></STRONG>&nbsp;</DIV>
<DIV><STRONG><FONT face=Arial size=2>and</FONT></STRONG></DIV>
<DIV><STRONG><FONT face=Arial size=2></FONT></STRONG>&nbsp;</DIV>
<DIV><STRONG><FONT face=Arial size=2>:home_root_t:</FONT></STRONG></DIV>
<DIV><STRONG><FONT face=Arial size=2></FONT></STRONG>&nbsp;</DIV>
<DIV><STRONG><FONT face=Arial size=2>.......... together labled --- see 
below.</FONT></STRONG></DIV>
<DIV><FONT face=Arial size=2></FONT>&nbsp;</DIV>
<DIV><FONT face=Arial size=2>and I can't fix it.&nbsp; do we have to edit the 
"inode" directly??</FONT></DIV>
<DIV><FONT face=Arial size=2></FONT>&nbsp;</DIV>
<DIV><FONT face=Arial size=2>Having two types on one file I believe should 
*never* happen but -- it has.</FONT></DIV>
<DIV><FONT face=Arial size=2></FONT>&nbsp;</DIV>
<DIV><FONT face=Arial size=2>Should be one&nbsp; <STRONG>"<FONT face=Arial 
size=2>:boot_t:"&nbsp; </FONT></STRONG>or the other&nbsp;"<STRONG><FONT 
face=Arial size=2>:home_root_t:" </FONT></STRONG>&nbsp;but never 
*both*!</FONT></DIV>
<DIV><FONT face=Arial size=2></FONT>&nbsp;</DIV>
<DIV><FONT face=Arial size=2>I think I know how it happened -- but that's not 
the issue right now -- how do you fix it??</FONT></DIV>
<DIV>&nbsp;</DIV>
<DIV><FONT face=Arial size=2>Thx&nbsp; </FONT></DIV>
<DIV><FONT face=Arial size=2>Roger Salisbury</FONT></DIV>
<DIV><FONT face=Arial size=2></FONT>&nbsp;</DIV>
<DIV><FONT face=Arial size=2></FONT>&nbsp;</DIV>
<DIV><FONT face=Arial size=2>Below is the setfiles display:</FONT></DIV>
<DIV><FONT face=Arial size=2></FONT>&nbsp;</DIV>
<DIV><FONT face=Arial size=2></FONT>&nbsp;</DIV>
<DIV><FONT face=Arial size=2>/etc/selinux/targeted/contexts/files/file_contexts: 
Multiple same specifications for /boot/lost\+found/.*.</FONT></DIV>
<DIV><FONT face=Arial 
size=2><BR>/etc/selinux/targeted/contexts/files/file_contexts: Multiple 
different specifications for /boot&nbsp;<STRONG> 
(system_u:object_r:home_root_t:s0 and 
system_u:object_r:boot_t:s0).</STRONG></DIV>
<DIV><BR>/etc/selinux/targeted/contexts/files/file_contexts: Multiple same 
specifications for /boot/\.journal.</DIV>
<DIV><BR>/etc/selinux/targeted/contexts/files/file_contexts: Multiple same 
specifications for /boot/lost\+found.</DIV>
<DIV><BR>setfiles: labeling files under /boot</DIV>
<DIV>&nbsp;</DIV>
<DIV>setfiles:&nbsp; labeling files under /boot</DIV>
<DIV><BR>matchpathcon_filespec_eval:&nbsp; hash table stats: 28 elements, 
28/65536 buckets used, longest chain length 1</DIV>
<DIV><BR>setfiles:&nbsp; Done.<BR></FONT></DIV></BODY></HTML>


_______________________________________________
linux-cifs-client mailing list
linux-cifs-client@lists.samba.org
https://lists.samba.org/mailman/listinfo/linux-cifs-client


[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic