setroublshoot-server not writing to /var/log/messages

Please specify version of CentOS

Moderator: xeont

setroublshoot-server not writing to /var/log/messages

Postby davidjames » Thu Feb 19, 2015 10:52 am

I have a Centos 6.6 system currently running in Permissive mode and would like to correct all the SELinux errors and run in Enforcing mode. The problem is that setroubleshoot-server is not working. Yum list installed | grep trouble gives

setroubleshoot-plugins.noarch
setroubleshoot-server.x86_64

messagebus is running

audit2why and sealert seem to work ok I I can fix the problems but I need ongoing notifications in /var/log/messages.

I isolated a single AVC message in a file avc.txt and I when I try to run sedispatch I get:

# cat avc.txt | sedispatch
Got Reply: Failed to execute program /lib64/dbus-1/dbus-daemon-launch-helper: Success

Any help appreciated.

Thanks
davidjames
 
Posts: 1
Joined: Thu Feb 19, 2015 10:38 am

Re: setroublshoot-server not writing to /var/log/messages

Postby henry » Thu Feb 19, 2015 3:58 pm

Hi,

Do you have correct permission to /var/log/messages?

Code: Select all
root root system_u:object_r:auditd_log_t:s0


This is what i have for the audit.log
henry
 
Posts: 3
Joined: Mon Jul 22, 2013 6:50 pm


Return to SELinux for CentOS

Who is online

Users browsing this forum: No registered users and 1 guest