[rsbac] acl questions

Amon Ott ao at rsbac.org
Sun Feb 29 20:45:43 CET 2004


On Sonntag, 29. Februar 2004 11:10, �ffffd2�ffffe0 �ffffc1�ffffd6 wrote:
> I installed ACL module but didn't choose the following items:
>     ACL network device protection
>     ACL network object protection
> But when the system starts up,it logs messages as follow:
>     portmap[3018]: cannot create udp socket: Operation not permitted
>     kernel: eth0: VIA VT6102 Rhine-II at 0xe800, 00:e0:4c:85:17:3c, IRQ 
11.
>     kernel: eth0: MII PHY found at address 1, status 0x786d advertising 
05e1 Link 45e1.
>     ifup: via-rhine device eth0 does not seem to be present, delaying 
initialization.
>     network: Bringing up interface eth0:  failed
>     kernel: rsbac_acl_check_right(): rsbac_acl_get_single_right() 
returned error RSBAC_EINVALIDTARGET!
>     kernel: rsbac_adf_request(): request CREATE, pid 2909, ppid 2896, 
prog_name iptables, uid 0, target_type NETOBJ, tid cef15ba0 INET RAW proto 
RAW local 0.0.0.0:255 remote 0.0.0.0:0, attr , value 0, result NOT_GRANTED 
by ACL

It seems that this is a bug. Please try the attached patch against 
rsbac/adf/acl_main.c, if it fixes the problem, I will make it yet another 
bugfix.

Amon.
-- 
http://www.rsbac.org - GnuPG: 2048g/5DEAAA30 2002-10-22
-------------- nächster Teil --------------
Ein Dateianhang mit Bin�rdaten wurde geschreddert...
Dateiname   : acl-nonet.diff
Dateityp    : text/x-diff
Dateigr��e  : 444 bytes
Beschreibung: nicht verf�gbar
URL         : http://www.rsbac.org/pipermail/rsbac/attachments/20040229/98a76fad/acl-nonet.bin


More information about the rsbac mailing list