selinux.vger.kernel.org archive mirror
 help / color / mirror / Atom feed
* execve silently blocked
@ 2019-10-02 19:25 Ian Pilcher
  2019-10-02 19:41 ` Dominick Grift
  0 siblings, 1 reply; 3+ messages in thread
From: Ian Pilcher @ 2019-10-02 19:25 UTC (permalink / raw)
  To: selinux

I am writing an SELinux policy for a daemon that needs to exec an
external program.  The execve call is being denied (permission denied),
but no denial is being logged, even after disabling dontaudit rules
(semodule -DB).

(The execve call does succeed in permissive mode.)

How can I troubleshoot this?

Thanks!

-- 
========================================================================
Ian Pilcher                                         arequipeno@gmail.com
-------- "I grew up before Mark Zuckerberg invented friendship" --------
========================================================================

^ permalink raw reply	[flat|nested] 3+ messages in thread

end of thread, other threads:[~2019-10-02 20:08 UTC | newest]

Thread overview: 3+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2019-10-02 19:25 execve silently blocked Ian Pilcher
2019-10-02 19:41 ` Dominick Grift
2019-10-02 20:08   ` Ian Pilcher

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).