Project

General

Profile

Actions

Bug #5446

closed

Denial from cron - postfix

Added by Lukas Zapletal about 10 years ago. Updated about 10 years ago.

Status:
Rejected
Priority:
Normal
Category:
Packaging
Target version:
-
Difficulty:
Triaged:
Fixed in Releases:
Found in Releases:

Description

AVC:

type=AVC msg=audit(1398427921.989:868): avc:  denied  { search } for  pid=10714 comm="local" name="puppet" dev=vda3 ino=17149 scontext=system_u:system_r:postfix_local_t:s0 tcontext=system_u:object_r:puppet_var_lib_t:s0 tclass=dir

require {
        type postfix_local_t;
}
puppet_read_lib(postfix_local_t)
Actions #1

Updated by Lukas Zapletal about 10 years ago

  • Category set to Packaging
  • Target version set to 1.8.3
Actions #2

Updated by Dominic Cleal about 10 years ago

  • Status changed from Ready For Testing to New

This should be filed against the base OS in my opinion, it looks like Postfix is searching /var/lib and hitting /var/lib/puppet or something, rather than the puppetmaster trying to do something and being denied.

Actions #3

Updated by Lukas Zapletal about 10 years ago

  • Status changed from New to Rejected

Of course, need more sleep these days.

Actions #4

Updated by Dominic Cleal about 10 years ago

  • Target version deleted (1.8.3)
Actions

Also available in: Atom PDF