Find the answer to your Linux question:
Results 1 to 2 of 2
hi i m new to selinux. i have installed selinux on my ubuntu hardy8.04 machine. it installed successfully. now i have created a new linux user and map this user ...
Enjoy an ad free experience by logging in. Not a member yet? Register.
  1. #1
    Just Joined!
    Join Date
    Feb 2009
    Posts
    1

    selinux newuser problem


    hi
    i m new to selinux. i have installed selinux on my ubuntu hardy8.04 machine. it installed successfully.
    now i have created a new linux user and map this user to selinux user using "semanage -a -s "staff_u" newusr" command.
    when i run "semanage login -l" command it shows entry of newuser there.
    now the problem is,when i restart the machine and use "newusr" for login to xsession it through me error "cannot start the session due to some internal error".as this time selinux is in "enforcing" mode. when i change the mnode to "permissive" then "neusr" is abel to login.
    please suggest me if i m missing some steps there.

    Errors:
    =========================================
    Feb 24 18:40:35 ists-desktop kernel: [ 43.408181] audit(1235481035.882:3): avc: denied { entrypoint } for pid=5551 comm="gdm" path="/etc/gdm/Xsession" dev=sda1 ino=3081327 scontext=staff_u:staff_r:staff_t tcontext=system_u:object_r:etc_t tclass=file

    Feb 24 18:40:36 ists-desktop kernel: [ 43.916433] audit(1235481036.390:4): avc: denied { setattr } for pid=5551 comm="seahorse-agent" name="orbit-newusr" dev=sda1 ino=3833863 scontext=staff_u:staff_r:staff_t tcontext=system_u:object_rdm_tmp_t tclass=dir

    Feb 24 18:40:36 ists-desktop kernel: [ 44.383718] audit(1235481036.858:5): avc: denied { unlink } for pid=5659 comm="gconf-sanity-ch" name="linc-161b-0-5c61989ad21d3" dev=sda1 ino=3833876 scontext=staff_u:staff_r:staff_t tcontext=staff_u:object_rdm_tmp_t tclass=sock_file
    ==========================================

    Thanks

  2. #2
    Administrator MikeTbob's Avatar
    Join Date
    Apr 2006
    Location
    Texas
    Posts
    7,864
    Please refrain from double posting, it's against the forum rules, continue the discussion in this thread only. Thank you and have a nice day.
    I do not respond to private messages asking for Linux help, Please keep it on the forums only.
    All new users please read this.** Forum FAQS. ** Adopt an unanswered post.

    I'd rather be lost at the lake than found at home.

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •