[rsbac] RC Problem with klog and syslogd

1-IT-4-HOSP 1-it-4-hosp at auswaertiges-amt.de
Fri Oct 26 15:08:30 CEST 2007


Hi list,

I'm using a Debian Lenny,
vanilla kernel 2.6.22.1,
patch-linux-2.6.22.1-rsbac-1.3.5,
rsbac-common-1.3.5
rsbac-admin-1.3.5

I've activated softmode to configure RSBAC. Since the first boot I've 
the problem that the klod and syslogd interrupt each other so I get tons 
of messages (about 250 per second) like these:

Oct 25 18:07:33 lenny kernel: 0000200341|rsbac_adf_request(): request 
SEND, pid 1985, ppid 1, prog_name klogd, prog_file /sbin/klogd, uid 0, 
target_type UNIXSOCK, tid Device 00:14 Inode 6049 Path /log, attr 
process, value 1975, result NOT_GRANTED (Softmode) by RC

Oct 25 18:07:33 lenny kernel: 0000200342|rsbac_adf_request(): request 
RECEIVE, pid 1975, ppid 1, prog_name syslogd, prog_file /sbin/syslogd, 
uid 0, target_type UNIXSOCK, tid Device 00:14 Inode 6049 Path /log, attr 
process, value 1975, result NOT_GRANTED (Softmode) by RC

So I "killall klogd" to work on the  system and try to allow the klogd.
I used 
http://www.rsbac.org/wiki/experiences/telmich#configuring_bind9_dns_server 
as example, because there was a "RC-Problem" too.

-> rsbac_rc_role_menu -> new role (with new id and name) -> Type Menu -> 
and now I see the problem. My target_type is UNIXSOCK and I can't choose 
anything like that. Nevertheless I tried it with the FD-Type (and 
continue everything like the "documentation" told me) but it didn't work 
(wasn't a surprise for me ;)).

Does anyone know how I can fix this problem?

Regards,
Dustin Götsch



More information about the rsbac mailing list