SELinux is preventing /usr/libexec/nm-dispatcher.action from using the 'signull' accesses on a process

Solution In Progress - Updated -

Issue

  • SELinux is preventing /usr/libexec/nm-dispatcher.action from using the 'signull' accesses on a process
Additional Information:
:Source Context                system_u:system_r:NetworkManager_t:s0
:Target Context                system_u:system_r:initrc_t:s0
:Target Objects                 [ process ]
:Source                        nm-dispatcher.a
:Source Path                   /usr/libexec/nm-dispatcher.action
:Port                          <Unknown>
:Host                          (removed)
:Source RPM Packages           NetworkManager-0.9.9.0-25.git20131108.el7.x86_64
:Target RPM Packages           
:Policy RPM                    selinux-policy-3.12.1-111.el7.noarch
:Selinux Enabled               True
:Policy Type                   targeted
:Enforcing Mode                Enforcing
:Host Name                     (removed)
:Platform                      Linux (removed) 3.10.0-54.0.1.el7.x86_64 #1 SMP
:                              Tue Nov 26 16:51:22 EST 2013 x86_64 x86_64
:Alert Count                   1
:First Seen                    2014-01-29 13:14:20 IST
:Last Seen                     2014-01-29 13:14:20 IST
:Local ID                      b97c74ac-6a58-4bd0-bec0-fd31c6780b68
:
:Raw Audit Messages
:type=AVC msg=audit(1390981460.675:537): avc:  denied  { signull } for  pid=3731 comm="nm-dispatcher.a" scontext=system_u:system_r:NetworkManager_t:s0 tcontext=system_u:system_r:initrc_t:s0 tclass=process
:
:
:type=SYSCALL msg=audit(1390981460.675:537): arch=x86_64 syscall=kill success=no exit=EACCES a0=eb2 a1=0 a2=7fa84d3ce790 a3=4000 items=0 ppid=1 pid=3731 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm=nm-dispatcher.a exe=/usr/libexec/nm-dispatcher.action subj=system_u:system_r:NetworkManager_t:s0 key=(null)
:
:Hash: nm-dispatcher.a,NetworkManager_t,initrc_t,process,signull

Environment

  • Red Hat Enterprise Linux 7 Beta
  • selinux-policy-3.12.1-111.el7.noarch
  • selinux-policy-3.12.1-110.el7.noarch

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.

Current Customers and Partners

Log in for full access

Log In

New to Red Hat?

Learn more about Red Hat subscriptions

Using a Red Hat product through a public cloud?

How to access this content