PDA

View Full Version : Test 3 w7o selinux installed, though lotsa selinux during usage?


gafami
12th May 2004, 03:50 PM
hey there,

I've installed Fedora 2 Test 3 -without- selinux enabled, however whenever i run up2date or some other scripts... the terminal gets flooded with these kind of messages:


/etc/security/selinux/file_contexts: invalid context system_u:object_r:var_log_ sysstat_t on line number 1661
/etc/security/selinux/file_contexts: invalid context system_u:object_r:tcpd_exe c_t on line number 1663
/etc/security/selinux/file_contexts: invalid context system_u:object_r:tftpd_ex ec_t on line number 1665
/etc/security/selinux/file_contexts: invalid context system_u:object_r:tftpd_ex ec_t on line number 1666
/etc/security/selinux/file_contexts: invalid context system_u:object_r:tftpdir_ t on line number 1667
/etc/security/selinux/file_contexts: invalid context system_u:object_r:tmpreape r_exec_t on line number 1669
/etc/security/selinux/file_contexts: invalid context system_u:object_r:tmpreape r_exec_t on line number 1670
/etc/security/selinux/file_contexts: invalid context system_u:object_r:tracerou te_exec_t on line number 1672
/etc/security/selinux/file_contexts: invalid context system_u:object_r:tracerou te_exec_t on line number 1673
/etc/security/selinux/file_contexts: invalid context system_u:object_r:tracerou te_exec_t on line number 1674
/etc/security/selinux/file_contexts: invalid context system_u:object_r:tracerou te_exec_t on line number 1675
/etc/security/selinux/file_contexts: invalid context system_u:object_r:transpro xy_exec_t on line number 1677
/etc/security/selinux/file_contexts: invalid context system_u:object_r:transpro xy_var_run_t on line number 1678
/etc/security/selinux/file_contexts: invalid context system_u:object_r:udev_exe c_t on line number 1680
/etc/security/selinux/file_contexts: invalid context system_u:object_r:udev_exe c_t on line number 1681
/etc/security/selinux/file_contexts: invalid context system_u:object_r:udev_exe c_t on line number 1682
/etc/security/selinux/file_contexts: invalid context system_u:object_r:udev_hel per_exec_t on line number 1683
/etc/security/selinux/file_contexts: invalid context system_u:object_r:udev_hel per_exec_t on line number 1684
/etc/security/selinux/file_contexts: invalid context system_u:object_r:uml_swit ch_exec_t on line number 1686
/etc/security/selinux/file_contexts: invalid context system_u:object_r:uml_swit ch_var_run_t on line number 1687
/etc/security/selinux/file_contexts: invalid context system_u:object_r:user_uml _rw_t on line number 1688
/etc/security/selinux/file_contexts: invalid context system_u:object_r:updfstab _exec_t on line number 1693
/etc/security/selinux/file_contexts: invalid context system_u:object_r:etc_upti med_t on line number 1695
/etc/security/selinux/file_contexts: invalid context system_u:object_r:uptimed_ exec_t on line number 1696
/etc/security/selinux/file_contexts: invalid context system_u:object_r:uptimed_ spool_t on line number 1697
/etc/security/selinux/file_contexts: invalid context system_u:object_r:usbmodul es_exec_t on line number 1699
/etc/security/selinux/file_contexts: invalid context system_u:object_r:usbmodul es_exec_t on line number 1700
/etc/security/selinux/file_contexts: invalid context system_u:object_r:useradd_ exec_t on line number 1702
/etc/security/selinux/file_contexts: invalid context system_u:object_r:useradd_ exec_t on line number 1703
/etc/security/selinux/file_contexts: invalid context system_u:object_r:useradd_ exec_t on line number 1704
/etc/security/selinux/file_contexts: invalid context system_u:object_r:groupadd _exec_t on line number 1706
/etc/security/selinux/file_contexts: invalid context system_u:object_r:groupadd _exec_t on line number 1707
/etc/security/selinux/file_contexts: invalid context system_u:object_r:groupadd _exec_t on line number 1708
/etc/security/selinux/file_contexts: invalid context system_u:object_r:groupadd _exec_t on line number 1709
/etc/security/selinux/file_contexts: invalid context system_u:object_r:groupadd _exec_t on line number 1710
/etc/security/selinux/file_contexts: invalid context system_u:object_r:userhelp er_conf_t on line number 1711
/etc/security/selinux/file_contexts: invalid context system_u:object_r:userhelp er_exec_t on line number 1712
/etc/security/selinux/file_contexts: invalid context system_u:object_r:usernetc tl_exec_t on line number 1714
/etc/security/selinux/file_contexts: invalid context system_u:object_r:utempter _exec_t on line number 1716
/etc/security/selinux/file_contexts: invalid context system_u:object_r:vmware_e xec_t on line number 1723
/etc/security/selinux/file_contexts: invalid context system_u:object_r:vmware_e xec_t on line number 1724
/etc/security/selinux/file_contexts: invalid context system_u:object_r:vmware_e xec_t on line number 1725
/etc/security/selinux/file_contexts: invalid context system_u:object_r:vmware_e xec_t on line number 1726
/etc/security/selinux/file_contexts: invalid context system_u:object_r:vmware_e xec_t on line number 1727
/etc/security/selinux/file_contexts: invalid context system_u:object_r:vmware_e xec_t on line number 1728
/etc/security/selinux/file_contexts: invalid context system_u:object_r:vmware_e xec_t on line number 1729
/etc/security/selinux/file_contexts: invalid context system_u:object_r:vmware_e xec_t on line number 1730
/etc/security/selinux/file_contexts: invalid context system_u:object_r:vmware_e xec_t on line number 1731
/etc/security/selinux/file_contexts: invalid context system_u:object_r:vmware_e xec_t on line number 1732
/etc/security/selinux/file_contexts: invalid context system_u:object_r:vmware_e xec_t on line number 1733
/etc/security/selinux/file_contexts: invalid context system_u:object_r:vmware_u ser_exec_t on line number 1734
/etc/security/selinux/file_contexts: invalid context system_u:object_r:vmware_u ser_exec_t on line number 1735
/etc/security/selinux/file_contexts: invalid context system_u:object_r:vmware_d evice_t on line number 1737
/etc/security/selinux/file_contexts: invalid context system_u:object_r:vmware_d evice_t on line number 1738
/etc/security/selinux/file_contexts: invalid context system_u:object_r:vmware_d evice_t on line number 1739
/etc/security/selinux/file_contexts: invalid context system_u:object_r:vmware_s ys_conf_t on line number 1741
/etc/security/selinux/file_contexts: invalid context system_u:object_r:vmware_s ys_conf_t on line number 1742
/etc/security/selinux/file_contexts: invalid context system_u:object_r:vmware_u ser_exec_t on line number 1744
/etc/security/selinux/file_contexts: invalid context system_u:object_r:vmware_u ser_exec_t on line number 1745
/etc/security/selinux/file_contexts: invalid context system_u:object_r:vmware_u ser_file_t on line number 1757
/etc/security/selinux/file_contexts: invalid context system_u:object_r:vmware_u ser_file_t on line number 1758
/etc/security/selinux/file_contexts: invalid context system_u:object_r:vmware_u ser_file_t on line number 1759
/etc/security/selinux/file_contexts: invalid context system_u:object_r:vmware_u ser_file_t on line number 1760
/etc/security/selinux/file_contexts: invalid context system_u:object_r:vmware_u ser_conf_t on line number 1761
/etc/security/selinux/file_contexts: invalid context system_u:object_r:vmware_u ser_conf_t on line number 1762
/etc/security/selinux/file_contexts: invalid context system_u:object_r:watchdog _exec_t on line number 1764
/etc/security/selinux/file_contexts: invalid context system_u:object_r:watchdog _device_t on line number 1765
/etc/security/selinux/file_contexts: invalid context system_u:object_r:watchdog _log_t on line number 1766
/etc/security/selinux/file_contexts: invalid context system_u:object_r:watchdog _var_run_t on line number 1767
/etc/security/selinux/file_contexts: invalid context system_u:object_r:xauth_ex ec_t on line number 1769
/etc/security/selinux/file_contexts: invalid context system_u:object_r:user_hom e_xauth_t on line number 1770
/etc/security/selinux/file_contexts: invalid context system_u:object_r:user_hom e_xauth_t on line number 1771
/etc/security/selinux/file_contexts: invalid context system_u:object_r:xdm_exec _t on line number 1773
/etc/security/selinux/file_contexts: invalid context system_u:object_r:xdm_exec _t on line number 1774
/etc/security/selinux/file_contexts: invalid context system_u:object_r:xdm_exec _t on line number 1775
/etc/security/selinux/file_contexts: invalid context system_u:object_r:xserver_ log_t on line number 1776
/etc/security/selinux/file_contexts: invalid context system_u:object_r:xserver_ log_t on line number 1777
/etc/security/selinux/file_contexts: invalid context system_u:object_r:xserver_ log_t on line number 1778
/etc/security/selinux/file_contexts: invalid context system_u:object_r:xserver_ log_t on line number 1779
/etc/security/selinux/file_contexts: invalid context system_u:object_r:xdm_tmp_ t on line number 1780
/etc/security/selinux/file_contexts: invalid context system_u:object_r:xsession _exec_t on line number 1781
/etc/security/selinux/file_contexts: invalid context system_u:object_r:xdm_rw_e tc_t on line number 1782
/etc/security/selinux/file_contexts: invalid context system_u:object_r:xsession _exec_t on line number 1783
/etc/security/selinux/file_contexts: invalid context system_u:object_r:xsession _exec_t on line number 1784
/etc/security/selinux/file_contexts: invalid context system_u:object_r:xsession _exec_t on line number 1785
/etc/security/selinux/file_contexts: invalid context system_u:object_r:xsession _exec_t on line number 1786
/etc/security/selinux/file_contexts: invalid context system_u:object_r:xsession _exec_t on line number 1787
/etc/security/selinux/file_contexts: invalid context system_u:object_r:xsession _exec_t on line number 1788



any idea how to get rid of them?


cheers and thanks :)


-j

ilja
12th May 2004, 03:52 PM
do you boot with selinux=0 ?

Darkmage
12th May 2004, 04:36 PM

make sure selinux is disabled in /etc/sysconfig/selinux


# This file controls the state of SELinux on the system.
# SELINUX= can take one of these three values:
# enforcinfg - SELinux security policy is enforced.
# permissive - SELinux prints warnings instead of enforcing.
# disabled - No SELinux policy is loaded.
SELINUX=disabled

gafami
12th May 2004, 06:33 PM
ahhh this seems to have worked :)

thanks!

ckr
15th May 2004, 01:53 AM
I am also having the same problem, but selinux is disabled already in the sysconfig. Is there something else I can add to boot without selinux. Maybe add a line in grub.conf?

Thanks.

ilja
15th May 2004, 07:49 AM
Yes the line in grub.conf should be selinux=0

Pegasus
15th May 2004, 08:02 AM
I never changed the selinux parameters. After several kernel-upgrades (default on iso was 327, upgrades 349,350,351,353, now 358) the messages where gone.

LordMorgul
15th May 2004, 08:15 AM
kernel 2.6.5-1.358 and newer should not have this issue at all.. earlier kernels did not support fully unloaded of the selinux code. Instead, the kernels simply did not load the policy, and ignored checking actions against the policy. The latest kernels do support fully unloading the security module tho, so when you use the selinux file in sysconfig, or the kernel parameter.. it should not have these (basically) benign and harmless messages.