Why did SELinux stopping parent process from killing its child in RHEL6 ?
Issue
-
SELinuxis not allowing parent process from killing its child. -
The
avcstates thatvarnished_tis not allowedkill permission.
Sep 22 02:24:08 <hostname> varnishd[29874]: Child (29875) not responding to CLI, killing it.
Sep 22 02:24:08 <hostname> kernel: type=1400 audit(1379780648.671:51488): avc: denied { kill } for pid=29874 comm="varnishd" capability=5 scontext=unconfined_u:system_r:varnishd_t:s0 tcontext=unconfined_u:system_r:varnishd_t:s0 tclass=capability
Environment
- Red Hat Enterprise Linux 6.3
- selinux-policy-3.7.19-195.el6_4.12.noarch
- selinux-policy-targeted-3.7.19-195.el6_4.12.noarch
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.