Ask Your Question
0

Fedora 28 KDE Discover snap backend [closed]

asked 2018-08-30 14:08:19 -0500

heliosstyx gravatar image

Is it safe under Fedora 28 KDE to use the discover plugin "snap". I installed it and then I got SELinux warnings, should I ignore it?

Please explain

edit retag flag offensive reopen merge delete

Closed for the following reason the question is answered, right answer was accepted by heliosstyx
close date 2018-09-01 11:06:48.588552

Comments

Installing Skype via Flatpak work very well. Easy and fast. I recommend it every newbie.

heliosstyx gravatar imageheliosstyx ( 2018-09-01 11:06:02 -0500 )edit

2 Answers

Sort by » oldest newest most voted
0

answered 2018-08-31 11:13:48 -0500

heliosstyx gravatar image

Thank you very much nisankh for your tips. I will not use snap in the future, because it makes only troubles on my machine. I am not willing to hack my machine for snap. It's too much time-consuming.

edit flag offensive delete link more
0

answered 2018-08-31 07:48:41 -0500

heliosstyx gravatar image

SELinux hindert umount daran, mit getattr-Zugriff auf Dateisystem / zuzugreifen.

Plugin catchall (100. Wahrscheinlichkeit) schlägt vor ***

If you believe that umount should be allowed getattr access on the filesystem by default. Dannsie sollten dies als Fehler melden. Um diesen Zugriff zu erlauben, können Sie ein lokales Richtlinien-Modul erstellen. Ausführen allow this access for now by executing:

ausearch -c 'umount' --raw | audit2allow -M my-umount

semodule -X 300 -i my-umount.pp

zusätzliche Information: Quellkontext systemu:systemr:snappyt:s0 Zielkontext systemu:objectr:fst:s0 Zielobjekte / [ filesystem ] Quelle umount Quellpfad umount Port <unbekannt> Host (removed) RPM-Pakete der Quelle
RPM-Pakete des Ziels filesystem-3.8-2.fc28.x8664 Richtlinien-RPM selinux-policy-3.14.1-40.fc28.noarch SELinux aktiviert True Richtlinientyp targeted Enforcing-Modus Enforcing Rechnername (removed) Plattform Linux localhost.localdomain 4.17.19-200.fc28.x8664 #1 SMP Fri Aug 24 15:47:41 UTC 2018 x8664 x8664 Anzahl der Alarme 1 Zuerst gesehen 2018-08-30 20:56:23 CEST Zuletzt gesehen 2018-08-30 20:56:23 CEST Lokale ID 11d87fbb-ed3a-4af3-a073-10edf8e7c223

Raw-Audit-Meldungen type=AVC msg=audit(1535655383.750:228): avc: denied { getattr } for pid=1902 comm="umount" name="/" dev="loop0" ino=2 scontext=systemu:systemr:snappyt:s0 tcontext=systemu:objectr:fst:s0 tclass=filesystem permissive=1

Hash: umount,snappyt,fst,filesystem,getattr

Nisankh I got this. The report is in German partially. In the meantime I have reported this error to bugzilla.redhat.com

I removed snap-plugin from KDE Discover and the dependencies for this plugin via dnfdragora. Is it right that snap is only fully supported under Ubuntu?

Thank you.

edit flag offensive delete link more

Question Tools

1 follower

Stats

Asked: 2018-08-30 14:08:19 -0500

Seen: 138 times

Last updated: Aug 31 '18