On Fri, Jan 21, 2022 at 2:24 PM Miro Hrončok <mhron...@redhat.com> wrote:
> On 23. 11. 21 18:18, Ben Cotton wrote: > > > https://fedoraproject.org/wiki/Changes/Plocate_as_the_default_locate_implementation > > > > == Summary == > > The venerable `mlocate` program is replaced by `plocate` — a > > compatible reimplementation that is faster and uses less disk space. > > > > > > == Owner == > > * Name: [[User:Zbyszek| Zbigniew Jędrzejewski-Szmek]] > > * Email: zbyszek at in.waw.pl > > * Name: [[User:Msekleta| Michal Sekletár]] > > * Email: msekleta at redhat.com > > ... > > Hey folks, > > I've just noticed that `ausearch -m AVC,USER_AVC -ts recent` lists a lot > of: > > type=AVC msg=audit(1642770831.616:31668): avc: denied { read } for > pid=866275 comm="locate" name="plocate.db" dev="dm-0" ino=5268062 > scontext=system_u:system_r:setroubleshootd_t:s0 > tcontext=system_u:object_r:var_lib_t:s0 tclass=file permissive=0 > > Is this a bug, or some kind of error in configuration? > plocate uses /var/lib/plocate as its data directory, so it needs to have assigned the correct label in selinux-policy. I've already submitted a PR for the change. https://github.com/fedora-selinux/selinux-policy/pull/1018 > > -- > Miro Hrončok > -- > Phone: +420777974800 > IRC: mhroncok > _______________________________________________ > devel mailing list -- devel@lists.fedoraproject.org > To unsubscribe send an email to devel-le...@lists.fedoraproject.org > Fedora Code of Conduct: > https://docs.fedoraproject.org/en-US/project/code-of-conduct/ > List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines > List Archives: > https://lists.fedoraproject.org/archives/list/devel@lists.fedoraproject.org > Do not reply to spam on the list, report it: > https://pagure.io/fedora-infrastructure > -- Zdenek Pytela Security SELinux team
_______________________________________________ devel mailing list -- devel@lists.fedoraproject.org To unsubscribe send an email to devel-le...@lists.fedoraproject.org Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/devel@lists.fedoraproject.org Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure