Why did SELinux stopping parent process from killing its child in RHEL6 ?
Issue
-
SELinuxis not allowing parent process from killing its child. -
The
avcstates thatvarnished_tis not allowedkill permission.
Sep 22 02:24:08 <hostname> varnishd[29874]: Child (29875) not responding to CLI, killing it.
Sep 22 02:24:08 <hostname> kernel: type=1400 audit(1379780648.671:51488): avc: denied { kill } for pid=29874 comm="varnishd" capability=5 scontext=unconfined_u:system_r:varnishd_t:s0 tcontext=unconfined_u:system_r:varnishd_t:s0 tclass=capability
Environment
- Red Hat Enterprise Linux 6.3
- selinux-policy-3.7.19-195.el6_4.12.noarch
- selinux-policy-targeted-3.7.19-195.el6_4.12.noarch
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase of over 48,000 articles and solutions.
Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.
