Written by: Martin Orr Label udisks-lvm-pv-export as lvm_exec_t It is run by udev since udisks Debian package 1.0.2-2 and does LVM things type=1400 audit(1293544934.584:14616): avc: denied { getattr } for pid=5236 comm="udisks-lvm-pv-e" path="/etc/lvm" dev=dm-0 ino=649353 scontext=system_u:system_r:udev_t:s0-s0:c0.c1023 tcontext=system_u:object_r:lvm_etc_t:s0 tclass=dir Index: policy/modules/system/lvm.fc =================================================================== --- policy/modules/system/lvm.fc.orig +++ policy/modules/system/lvm.fc @@ -28,6 +28,7 @@ # /lib/lvm-10/.* -- gen_context(system_u:object_r:lvm_exec_t,s0) /lib/lvm-200/.* -- gen_context(system_u:object_r:lvm_exec_t,s0) +/lib/udev/udisks-lvm-pv-export -- gen_context(system_u:object_r:lvm_exec_t,s0) # # /sbin