Wind River Support Network

HomeDefectsCGP8-296
Not to be fixed

CGP8-296 : [selinux] avc: denied { search } for pid=980 comm="acpid" name="journal" dev="tmpfs"

Created: Mar 14, 2016    Updated: Apr 19, 2018
Resolved Date: Apr 17, 2018
Found In Version: 8.0.0.3
Severity: Standard
Applicable for: Wind River Linux 8
Component/s: Userspace

Description

root@SDP_Wildcat_Pass-3-C1:~# grep avc /var/log/audit/audit.log | grep journal
type=AVC msg=audit(1458011682.875:48): avc:  denied  { search } for  pid=980 comm="acpid" name="journal" dev="tmpfs" ino=33803 scontext=system_u:system_r:apmd_t:s0-s15:c0.c1023 tcontext=system_u:object_r:syslogd_var_run_t:s15:c0.c1023 tclass=dir permissive=0
type=AVC msg=audit(1458011683.007:54): avc:  denied  { search } for  pid=1008 comm="acpid" name="journal" dev="tmpfs" ino=33803 scontext=system_u:system_r:apmd_t:s0-s15:c0.c1023 tcontext=system_u:object_r:syslogd_var_run_t:s15:c0.c1023 tclass=dir permissive=0
type=AVC msg=audit(1458011683.015:55): avc:  denied  { search } for  pid=1008 comm="acpid" name="journal" dev="tmpfs" ino=33803 scontext=system_u:system_r:apmd_t:s0-s15:c0.c1023 tcontext=system_u:object_r:syslogd_var_run_t:s15:c0.c1023 tclass=dir permissive=0
type=AVC msg=audit(1458011683.019:56): avc:  denied  { search } for  pid=1008 comm="acpid" name="journal" dev="tmpfs" ino=33803 scontext=system_u:system_r:apmd_t:s0-s15:c0.c1023 tcontext=system_u:object_r:syslogd_var_run_t:s15:c0.c1023 tclass=dir permissive=0
root@SDP_Wildcat_Pass-3-C1:~# 

Steps to Reproduce

$ configure --enable-board=intel-x86-64 --enable-kernel=cgl --enable-rootfs=glibc-cgl
$ make fs
# boot up target with selinux=1 enforcing=1.
# on target: 
root@SDP_Wildcat_Pass-3-C1:~# grep avc /var/log/audit/audit.log | grep journal
Live chat
Online