[DSE-Dev] Bug#888722: More details - AVCs from systemd journal + audit2allow output

Andrew Worsley amworsley at gmail.com
Sat Mar 3 04:48:13 UTC 2018


audit2allow output:

#============= semanage_t ==============
allow semanage_t debugfs_t:dir write;
allow semanage_t device_t:dir write;
allow semanage_t hugetlbfs_t:dir write;
allow semanage_t root_t:dir write;
allow semanage_t security_t:dir write;
allow semanage_t semanage_tmp_t:file execute;
allow semanage_t sysctl_fs_t:dir search;
allow semanage_t tmpfs_t:dir { search write };
allow semanage_t user_home_dir_t:dir write;
allow semanage_t user_runtime_t:dir write;


  * Also tried to see if my filesystem needed some re-labelling

root at kvm:/home/amw# restorecon -R -F -v -n / |& wc
   1886   13121  281001

* I tried a relable


touch  /.autorelabel ; reboot

But there are still 352  entries and the semanage login -l still fails...

* So I did the restorecon and that eliminates everything except warnings
...
Warning no default label for /sys/kernel/debug/ras
...

 * But the semanage login -l still fails exactly the same.

 * So I started building the policy based on the output of audit2allow
and the following fixed things:

policy_module(local-semanage, 1.2)

require {
   type semanage_t, semanage_tmp_t, root_t;
   type device_t, security_t;
}
allow semanage_t root_t:dir write;
allow semanage_t security_t:dir write;
allow semanage_t device_t:dir write;
allow semanage_t semanage_tmp_t:file execute;

root at kvm:~/pol-semanage# semanage login -l

Login Name           SELinux User         MLS/MCS Range        Service

__default__          unconfined_u         s0-s0:c0.c1023       *
root                 unconfined_u         s0-s0:c0.c1023       *
system_u             system_u             s0-s0:c0.c1023       *

* Actually by trial and error I confirmed that the single following
file was necessary and sufficient to fix the problem!

policy_module(local-semanage, 1.3)

require {
   type semanage_t, semanage_tmp_t, root_t;
   type device_t, security_t;
}
#allow semanage_t root_t:dir write;
#allow semanage_t security_t:dir write;
#allow semanage_t device_t:dir write;
allow semanage_t semanage_tmp_t:file execute;
-------------- next part --------------
[ 1821.256883] kvm audit[826]: AVC avc:  denied  { execute } for  pid=826 comm="semanage" path=2F746D702F233130323631202864656C6574656429 dev="vda1" ino=10261 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=unconfined_u:object_r:semanage_tmp_t:s0 tclass=file permissive=0
[ 1821.257200] kvm audit[826]: SYSCALL arch=c000003e syscall=9 success=no exit=-13 a0=0 a1=1000 a2=5 a3=1 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.257314] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.257490] kvm audit[826]: AVC avc:  denied  { execute } for  pid=826 comm="semanage" path=2F7661722F746D702F233130323631202864656C6574656429 dev="vda1" ino=10261 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=unconfined_u:object_r:semanage_tmp_t:s0 tclass=file permissive=0
[ 1821.257617] kvm audit[826]: SYSCALL arch=c000003e syscall=9 success=no exit=-13 a0=0 a1=1000 a2=5 a3=1 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.257717] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.257883] kvm audit[826]: AVC avc:  denied  { write search } for  pid=826 comm="semanage" name="/" dev="tmpfs" ino=8713 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:tmpfs_t:s0 tclass=dir permissive=0
[ 1821.257982] kvm audit[826]: SYSCALL arch=c000003e syscall=2 success=no exit=-13 a0=7fe25669ab37 a1=490082 a2=1c0 a3=1 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.258075] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.258210] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="root" dev="vda1" ino=7867 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:user_home_dir_t:s0 tclass=dir permissive=0
[ 1821.258308] kvm audit[826]: SYSCALL arch=c000003e syscall=2 success=no exit=-13 a0=7fffa04a1ecb a1=490082 a2=1c0 a3=1 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.258448] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.258793] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="devtmpfs" ino=3 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:device_t:s0 tclass=dir permissive=0
[ 1821.258899] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa0494885 a1=2 a2=0 a3=4 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.258996] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.259108] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="vda1" ino=2 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:root_t:s0 tclass=dir permissive=0
[ 1821.259254] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa049488a a1=2 a2=0 a3=4 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.259345] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.259530] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="selinuxfs" ino=1 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:security_t:s0 tclass=dir permissive=0
[ 1821.259626] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa049488a a1=2 a2=0 a3=1 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.259718] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.259826] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="tmpfs" ino=8713 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:tmpfs_t:s0 tclass=dir permissive=0
[ 1821.259928] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa0494886 a1=2 a2=0 a3=4 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.260041] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.260232] kvm audit[826]: AVC avc:  denied  { search } for  pid=826 comm="semanage" name="fs" dev="proc" ino=8928 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:sysctl_fs_t:s0 tclass=dir permissive=0
[ 1821.260334] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa049488a a1=2 a2=fffffffffffffffe a3=4 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.260421] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.260555] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="debugfs" ino=1 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:debugfs_t:s0 tclass=dir permissive=0
[ 1821.260648] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa0494888 a1=2 a2=0 a3=1 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.260734] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.260841] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="mqueue" ino=7436 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:tmpfs_t:s0 tclass=dir permissive=0
[ 1821.260942] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa0494887 a1=2 a2=0 a3=1 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.261028] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.261158] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="hugetlbfs" ino=9157 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:hugetlbfs_t:s0 tclass=dir permissive=0
[ 1821.261250] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa049488a a1=2 a2=0 a3=1 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.261333] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.261674] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="tmpfs" ino=12676 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=unconfined_u:object_r:user_runtime_t:s0 tclass=dir permissive=0
[ 1821.261777] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa0494886 a1=2 a2=0 a3=4 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.261866] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.261975] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="tmpfs" ino=13971 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=unconfined_u:object_r:user_runtime_t:s0 tclass=dir permissive=0
[ 1821.262068] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa0494886 a1=2 a2=0 a3=4 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.262155] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.262411] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="devtmpfs" ino=3 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:device_t:s0 tclass=dir permissive=0
[ 1821.262511] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa0494885 a1=2 a2=0 a3=4 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.262596] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.262705] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="vda1" ino=2 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:root_t:s0 tclass=dir permissive=0
[ 1821.262798] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa049488a a1=2 a2=0 a3=4 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.262882] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.263004] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="selinuxfs" ino=1 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:security_t:s0 tclass=dir permissive=0
[ 1821.263097] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa049488a a1=2 a2=0 a3=1 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.263184] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.263295] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="tmpfs" ino=8713 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:tmpfs_t:s0 tclass=dir permissive=0
[ 1821.263461] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa0494886 a1=2 a2=0 a3=4 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.263546] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.263730] kvm audit[826]: AVC avc:  denied  { search } for  pid=826 comm="semanage" name="fs" dev="proc" ino=8928 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:sysctl_fs_t:s0 tclass=dir permissive=0
[ 1821.263827] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa049488a a1=2 a2=fffffffffffffffe a3=4 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.263913] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.264074] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="debugfs" ino=1 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:debugfs_t:s0 tclass=dir permissive=0
[ 1821.264174] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa0494888 a1=2 a2=0 a3=1 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.264263] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.264433] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="mqueue" ino=7436 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:tmpfs_t:s0 tclass=dir permissive=0
[ 1821.264667] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa0494887 a1=2 a2=0 a3=1 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.264770] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.264928] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="hugetlbfs" ino=9157 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:hugetlbfs_t:s0 tclass=dir permissive=0
[ 1821.265036] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa049488a a1=2 a2=0 a3=1 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.265123] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.265241] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="tmpfs" ino=12676 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=unconfined_u:object_r:user_runtime_t:s0 tclass=dir permissive=0
[ 1821.265335] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa0494886 a1=2 a2=0 a3=4 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.265418] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.265542] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="tmpfs" ino=13971 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=unconfined_u:object_r:user_runtime_t:s0 tclass=dir permissive=0
[ 1821.265635] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa0494886 a1=2 a2=0 a3=4 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.265723] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.476799] kvm audit[826]: AVC avc:  denied  { execute } for  pid=826 comm="semanage" path=2F746D702F233130323631202864656C6574656429 dev="vda1" ino=10261 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=unconfined_u:object_r:semanage_tmp_t:s0 tclass=file permissive=0
[ 1821.477064] kvm audit[826]: SYSCALL arch=c000003e syscall=9 success=no exit=-13 a0=0 a1=1000 a2=5 a3=1 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.477226] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.477466] kvm audit[826]: AVC avc:  denied  { execute } for  pid=826 comm="semanage" path=2F7661722F746D702F233130323631202864656C6574656429 dev="vda1" ino=10261 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=unconfined_u:object_r:semanage_tmp_t:s0 tclass=file permissive=0
[ 1821.477636] kvm audit[826]: SYSCALL arch=c000003e syscall=9 success=no exit=-13 a0=0 a1=1000 a2=5 a3=1 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.477777] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.477965] kvm audit[826]: AVC avc:  denied  { write search } for  pid=826 comm="semanage" name="/" dev="tmpfs" ino=8713 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:tmpfs_t:s0 tclass=dir permissive=0
[ 1821.478127] kvm audit[826]: SYSCALL arch=c000003e syscall=2 success=no exit=-13 a0=7fe25669ab37 a1=490082 a2=1c0 a3=1 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.478276] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.478446] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="root" dev="vda1" ino=7867 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:user_home_dir_t:s0 tclass=dir permissive=0
[ 1821.478608] kvm audit[826]: SYSCALL arch=c000003e syscall=2 success=no exit=-13 a0=7fffa04a1ecb a1=490082 a2=1c0 a3=1 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.478749] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.478988] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="devtmpfs" ino=3 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:device_t:s0 tclass=dir permissive=0
[ 1821.479138] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa048edc5 a1=2 a2=0 a3=4 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.479307] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.479481] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="vda1" ino=2 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:root_t:s0 tclass=dir permissive=0
[ 1821.479628] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa048edca a1=2 a2=0 a3=4 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.479772] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.479956] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="selinuxfs" ino=1 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:security_t:s0 tclass=dir permissive=0
[ 1821.480154] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa048edca a1=2 a2=0 a3=1 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.480263] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.480376] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="tmpfs" ino=8713 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:tmpfs_t:s0 tclass=dir permissive=0
[ 1821.480473] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa048edc6 a1=2 a2=0 a3=4 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.480594] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.480830] kvm audit[826]: AVC avc:  denied  { search } for  pid=826 comm="semanage" name="fs" dev="proc" ino=8928 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:sysctl_fs_t:s0 tclass=dir permissive=0
[ 1821.480993] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa048edca a1=2 a2=fffffffffffffffe a3=4 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.481137] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.481321] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="debugfs" ino=1 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:debugfs_t:s0 tclass=dir permissive=0
[ 1821.481475] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa048edc8 a1=2 a2=0 a3=1 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.481633] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.481804] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="mqueue" ino=7436 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:tmpfs_t:s0 tclass=dir permissive=0
[ 1821.481953] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa048edc7 a1=2 a2=0 a3=1 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.482094] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.482266] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="hugetlbfs" ino=9157 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:hugetlbfs_t:s0 tclass=dir permissive=0
[ 1821.482417] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa048edca a1=2 a2=0 a3=1 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.482564] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.482754] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="tmpfs" ino=12676 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=unconfined_u:object_r:user_runtime_t:s0 tclass=dir permissive=0
[ 1821.482906] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa048edc6 a1=2 a2=0 a3=4 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.483144] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.483473] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="tmpfs" ino=13971 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=unconfined_u:object_r:user_runtime_t:s0 tclass=dir permissive=0
[ 1821.483626] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa048edc6 a1=2 a2=0 a3=4 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.483779] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.484145] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="devtmpfs" ino=3 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:device_t:s0 tclass=dir permissive=0
[ 1821.484307] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa048edc5 a1=2 a2=0 a3=4 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.484454] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.484633] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="vda1" ino=2 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:root_t:s0 tclass=dir permissive=0
[ 1821.484778] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa048edca a1=2 a2=0 a3=4 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.485085] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.485165] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="selinuxfs" ino=1 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:security_t:s0 tclass=dir permissive=0
[ 1821.485245] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa048edca a1=2 a2=0 a3=1 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.485357] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.486100] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="tmpfs" ino=8713 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:tmpfs_t:s0 tclass=dir permissive=0
[ 1821.486192] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa048edc6 a1=2 a2=0 a3=4 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.486812] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.486900] kvm audit[826]: AVC avc:  denied  { search } for  pid=826 comm="semanage" name="fs" dev="proc" ino=8928 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:sysctl_fs_t:s0 tclass=dir permissive=0
[ 1821.486983] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa048edca a1=2 a2=fffffffffffffffe a3=4 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.487088] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.487164] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="debugfs" ino=1 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:debugfs_t:s0 tclass=dir permissive=0
[ 1821.487249] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa048edc8 a1=2 a2=0 a3=1 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.487360] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.487443] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="mqueue" ino=7436 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:tmpfs_t:s0 tclass=dir permissive=0
[ 1821.487525] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa048edc7 a1=2 a2=0 a3=1 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.487635] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.487717] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="hugetlbfs" ino=9157 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=system_u:object_r:hugetlbfs_t:s0 tclass=dir permissive=0
[ 1821.487796] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa048edca a1=2 a2=0 a3=1 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.487893] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.487975] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="tmpfs" ino=12676 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=unconfined_u:object_r:user_runtime_t:s0 tclass=dir permissive=0
[ 1821.492187] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa048edc6 a1=2 a2=0 a3=4 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.492328] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C
[ 1821.492415] kvm audit[826]: AVC avc:  denied  { write } for  pid=826 comm="semanage" name="/" dev="tmpfs" ino=13971 scontext=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 tcontext=unconfined_u:object_r:user_runtime_t:s0 tclass=dir permissive=0
[ 1821.492509] kvm audit[826]: SYSCALL arch=c000003e syscall=21 success=no exit=-13 a0=7fffa048edc6 a1=2 a2=0 a3=4 items=0 ppid=732 pid=826 auid=1000 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=1 comm="semanage" exe="/usr/bin/python3.5" subj=unconfined_u:unconfined_r:semanage_t:s0-s0:c0.c1023 key=(null)
[ 1821.492618] kvm audit: PROCTITLE proctitle=2F7573722F62696E2F707974686F6E33002D4573002F7573722F7362696E2F73656D616E616765006C6F67696E002D6C


More information about the SELinux-devel mailing list