libvirt 0.10.2-r3 run_init libvirt ================== [363127.009364] type=1400 audit(1353521041.611:1410): avc: denied { unlink } for pid=2223 comm="libvirtd" name="libvirt-sock" dev="tmpfs" ino=195735 scontext=system_u:system_r:virtd_t tcontext=system_u:obj ect_r:var_run_t tclass=sock_file [363183.969751] type=1400 audit(1353521098.611:1411): avc: denied { open } for pid=6850 comm="libvirtd" path="/tmp/libvirt.log" dev="tmpfs" ino=25148 scontext=system_u:system_r:virtd_t tcontext=system_u:ob ject_r:initrc_tmp_t tclass=file [363183.972382] type=1400 audit(1353521098.611:1412): avc: denied { create } for pid=6850 comm="libvirtd" name="libvirt-sock" scontext=system_u:system_r:virtd_t tcontext=system_u:object_r:var_run_t tclass= sock_file [363183.973844] type=1400 audit(1353521098.611:1413): avc: denied { create } for pid=6861 comm="libvirtd" scontext=system_u:system_r:virtd_t tcontext=system_u:system_r:virtd_t tclass=packet_socket [363183.973864] type=1400 audit(1353521098.611:1414): avc: denied { ioctl } for pid=6861 comm="libvirtd" path="socket:[228788]" dev="sockfs" ino=228788 scontext=system_u:system_r:virtd_t tcontext=system_u: system_r:virtd_t tclass=packet_socket [363184.380213] type=1400 audit(1353521099.021:1415): avc: denied { getattr } for pid=6861 comm="libvirtd" path="/usr/sbin/dmidecode" dev="md5" ino=15609 scontext=system_u:system_r:virtd_t tcontext=system_ u:object_r:dmidecode_exec_t tclass=file [363184.380463] type=1400 audit(1353521099.021:1416): avc: denied { execute } for pid=6941 comm="libvirtd" name="dmidecode" dev="md5" ino=15609 scontext=system_u:system_r:virtd_t tcontext=system_u:object_r :dmidecode_exec_t tclass=file [363184.380469] type=1400 audit(1353521099.021:1417): avc: denied { read open } for pid=6941 comm="libvirtd" path="/usr/sbin/dmidecode" dev="md5" ino=15609 scontext=system_u:system_r:virtd_t tcontext=syste m_u:object_r:dmidecode_exec_t tclass=file [363184.380509] type=1400 audit(1353521099.021:1418): avc: denied { execute_no_trans } for pid=6941 comm="libvirtd" path="/usr/sbin/dmidecode" dev="md5" ino=15609 scontext=system_u:system_r:virtd_t tcontex t=system_u:object_r:dmidecode_exec_t tclass=file [363184.380782] type=1400 audit(1353521099.021:1419): avc: denied { read } for pid=6941 comm="dmidecode" name="mem" dev="tmpfs" ino=3376 scontext=system_u:system_r:virtd_t tcontext=system_u:object_r:memory _device_t tclass=chr_file [363349.801721] audit_printk_skb: 6 callbacks suppressed [363349.801725] type=1400 audit(1353521264.541:1422): avc: denied { append } for pid=7000 comm="libvirtd" name="libvirt.log" dev="tmpfs" ino=25148 scontext=system_u:system_r:virtd_t tcontext=system_u:objec t_r:initrc_tmp_t tclass=file [363349.801736] type=1400 audit(1353521264.541:1423): avc: denied { open } for pid=7000 comm="libvirtd" path="/tmp/libvirt.log" dev="tmpfs" ino=25148 scontext=system_u:system_r:virtd_t tcontext=system_u:ob ject_r:initrc_tmp_t tclass=file [363350.177856] type=1400 audit(1353521264.911:1424): avc: denied { read } for pid=7011 comm="libvirtd" name="/" dev="md11" ino=2 scontext=system_u:system_r:virtd_t tcontext=system_u:object_r:default_t tcl ass=dir [363350.213342] type=1400 audit(1353521264.951:1425): avc: denied { getattr } for pid=7011 comm="libvirtd" path="/usr/sbin/dmidecode" dev="md5" ino=15609 scontext=system_u:system_r:virtd_t tcontext=system_ u:object_r:dmidecode_exec_t tclass=file [363350.213596] type=1400 audit(1353521264.951:1426): avc: denied { execute } for pid=7091 comm="libvirtd" name="dmidecode" dev="md5" ino=15609 scontext=system_u:system_r:virtd_t tcontext=system_u:object_r :dmidecode_exec_t tclass=file [363350.213601] type=1400 audit(1353521264.951:1427): avc: denied { read open } for pid=7091 comm="libvirtd" path="/usr/sbin/dmidecode" dev="md5" ino=15609 scontext=system_u:system_r:virtd_t tcontext=syste m_u:object_r:dmidecode_exec_t tclass=file [363350.213642] type=1400 audit(1353521264.951:1428): avc: denied { execute_no_trans } for pid=7091 comm="libvirtd" path="/usr/sbin/dmidecode" dev="md5" ino=15609 scontext=system_u:system_r:virtd_t tcontex t=system_u:object_r:dmidecode_exec_t tclass=file [363350.213918] type=1400 audit(1353521264.951:1429): avc: denied { read } for pid=7091 comm="dmidecode" name="mem" dev="tmpfs" ino=3376 scontext=system_u:system_r:virtd_t tcontext=system_u:object_r:memory _device_t tclass=chr_file [363350.213922] type=1400 audit(1353521264.951:1430): avc: denied { open } for pid=7091 comm="dmidecode" path="/dev/mem" dev="tmpfs" ino=3376 scontext=system_u:system_r:virtd_t tcontext=system_u:object_r:m emory_device_t tclass=chr_file [363350.213926] type=1400 audit(1353521264.951:1431): avc: denied { sys_rawio } for pid=7091 comm="dmidecode" capability=17 scontext=system_u:system_r:virtd_t tcontext=system_u:system_r:virtd_t tclass=cap ability