403Webshell
Server IP : 182.53.201.61  /  Your IP : 216.73.217.175
Web Server : Apache/2.2.15 (Fedora)
System : Linux km10.dyndns.org 2.6.31.5-127.fc12.i686.PAE #1 SMP Sat Nov 7 21:25:57 EST 2009 i686
User : apache ( 48)
PHP Version : 5.3.3
Disable Function : NONE
MySQL : ON  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /usr/share/locale/fr/LC_MESSAGES/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /usr/share/locale/fr/LC_MESSAGES/setroubleshoot-plugins.mo
	<P1Q=
Vgh|$fR6Y}~}}zxX& !"5"#7#$C%Bq&[(+-s.0@1P25349G6Lb6l6L7dU7N8W8VH8K8U9CN9E9G:.N:vd:a;*^;M;c<9O<V<`=Da=V>X>^X>^?]?o^?_@,_@@SBnHBQEBE]fGGHGHOHJ#tKILsL8MM8N>O ZO_]O?PVPXPYSf]SXVZVwZV`W-YYY[X]]^`	a	bzccd~ef*h 
hKhYh^1hbhh
hhhhhhh
h
h;hi6i<iB*jT
jjjLl:imTngoFio|pbpqrsRtuvwN6wy'yzZ{{|W|}~~D|.;a-lJHJ^4kyXMmmNO[QhQ@EM_M;AF}Lhjz{FalQ`g}`F`Re[^[ X|]a3etf"{FxUsRM::BGZ]@C^Km/lŸjnwmX_qlHK'AsEϵD@ԖF1	;HM0Q؂؜ؠضCEKYQ2ګ	J`Kka!%=,LZ'
/7~fd{v?QIl$0)g+MmE&< bsRXi|xNA5YU3SojDqHpCO
Ft@nue^94;G1>(#_:BVw6]hPrW"T*-z8y.\2[}c

    SELinux denied access requested by $SOURCE. It is not
    expected that this access is required by $SOURCE and this access
    may signal an intrusion attempt. It is also possible that the specific
    version or configuration of the application is causing it to require
    additional access.

    

    SELinux denied access requested by $SOURCE. The current boolean 
    settings do not allow this access.  If you have not setup $SOURCE to
    require this access this may signal an intrusion attempt. If you do intend 
    this access you need to change the booleans on this system to allow 
    the access.
    
    Attempt restorecon -v '$TARGET_PATH' or chcon -t SIMILAR_TYPE '$TARGET_PATH'
    
    Changing the "$BOOLEAN" boolean to true will allow this access:
    "setsebool -P $BOOLEAN=1"
    
    Changing the "$BOOLEAN" boolean to true will allow this access:
    "setsebool -P $BOOLEAN=1."
    
    Changing the "allow_ftpd_use_nfs" boolean to true will allow this access:
    "setsebool -P allow_ftpd_use_nfs=1."
    
    Changing the file_context to mnt_t will allow mount to mount the file system:
    "chcon -t mnt_t '$TARGET_PATH'."
    You must also change the default file context files on the system in order to preserve them even on a full relabel.  "semanage fcontext -a -t mnt_t '$TARGET_PATH'"
    
    If you allow the management of the kernel modules on your machine,
    turn off the $BOOLEAN boolean: "setsebool -P
    $BOOLEAN=0".
    
    If you do not want SELinux preventing ftp from writing files anywhere on
    the system you need to turn on the $BOOLEAN boolean: "setsebool -P
    $BOOLEAN=1"
    
    If you trust $TARGET_PATH to run correctly, you can change the
    file context to textrel_shlib_t. "chcon -t textrel_shlib_t
    '$TARGET_PATH'"
    You must also change the default file context files on the system in order to preserve them even on a full relabel.  "semanage fcontext -a -t textrel_shlib_t '$TARGET_PATH'"
    
    
    If you want $SOURCE to access this files, you need to
    relabel them using restorecon -v '$TARGET_PATH'.  You might want to
    relabel the entire directory using restorecon -R -v '$TARGET_DIR'.
    
    If you want $SOURCE to continue, you must turn on the
    $BOOLEAN boolean.  Note: This boolean will affect all applications
    on the system.
    
    If you want ftp to allow users access to their home directories
    you need to turn on the $BOOLEAN boolean: "setsebool -P
    $BOOLEAN=1"
    
    If you want httpd to allow database connections you need to turn on the
    $BOOLEAN boolean: "setsebool -P
    $BOOLEAN=1"
    
    If you want httpd to be able to run a particular shell script,
    you can label it with chcon -t httpd_sys_script_exec_t SCRIPTFILE.  If you
    want httpd to be able execute any shell script you need to turn on
    the $BOOLEAN boolean: "setsebool -P $BOOLEAN=1"
    
    If you want httpd to be able to run cgi scripts, you need to
    turn on the $BOOLEAN boolean: "setsebool -P
    $BOOLEAN=1"
    
    If you want httpd to connect to httpd/ftp ports you need to turn
    on the $BOOLEAN boolean: "setsebool -P
    $BOOLEAN=1"
    
    If you want httpd to connect to network ports you need to turn on the
    httpd_can_network_network_connect boolean: "setsebool -P
    $BOOLEAN=1"
    
    If you want named to run as a secondary server and accept zone
    transfers you need to turn on the $BOOLEAN boolean: "setsebool -P
    $BOOLEAN=1"
    
    If you want ppp to be able to insert kernel modules you need to
    turn on the $BOOLEAN boolean: "setsebool -P $BOOLEAN=1"
    
    If you want samba to share home directories you need to turn on
    the $BOOLEAN boolean: "setsebool -P $BOOLEAN=1"
    
    If you want samba to share nfs file systems you need to turn on
    the $BOOLEAN boolean: "setsebool -P $BOOLEAN=1"
    
    If you want spamd to share home directories you need to turn on
    the $BOOLEAN boolean: "setsebool -P $BOOLEAN=1"
    
    If you want squid to connect to network ports you need to turn on
    the $BOOLEAN boolean: "setsebool -P $BOOLEAN=1"
    
    If you want the http daemon to be able to access the terminal, you
    must set the $BOOLEAN boolean: "setsebool -P
    $BOOLEAN=1"
    
    If you want the http daemon to share home directories you need to
    turn on the $BOOLEAN boolean: "setsebool -P $BOOLEAN=1"
    
    If you want the http daemon to use built in scripting you need to
    enable the $BOOLEAN boolean: "setsebool -P
    $BOOLEAN=1"
    
    If you want the sasl authentication daemon to be able to read
    the /etc/shadow file change the $BOOLEAN boolean: "setsebool -P
    $BOOLEAN=1".
    
    If you want to allow $SOURCE to bind to this port
    semanage port -a -t inetd_child_port_t -p PROTOCOL $PORT_NUMBER
    Where PROTOCOL is tcp or udp.
    
    If you want to allow user  programs to run as TCP Servers, you can turn on the user_tcp_server boolean, by executing:
    setsebool -P $BOOLEAN=1
    
    If you want to allow zebra to overwrite its configuration you must
    turn on the $BOOLEAN boolean: "setsebool -P
    $BOOLEAN=1"
    
    If you want to change the file context of $TARGET_PATH so that the automounter can execute it you can execute "chcon -t bin_t $TARGET_PATH".  If you want this to survive a relabel, you need to permanently change the file context: execute  "semanage fcontext -a -t bin_t $TARGET_PATH".
    
    If you want to export a public file systems using nfs you need to
    turn on the $BOOLEAN boolean: "setsebool -P
    $BOOLEAN=1".
    
    If you want to export file systems using nfs you need to turn on
    the $BOOLEAN boolean: "setsebool -P $BOOLEAN=1".
    
    If you want to export file systems using samba you need to turn on
    the $BOOLEAN boolean: "setsebool -P $BOOLEAN=1".
    
    If you want to export writable file systems using nfs you need to turn on the $BOOLEAN boolean: "setsebool -P $BOOLEAN=1".
    
    If you want to export writable file systems using samba you need to turn on the $BOOLEAN boolean: "setsebool -P $BOOLEAN=1".
    
    If you want to modify the way SELinux is running on your machine
    you need to bring the machine to single user mode with enforcing
    turned off.  The turn off the secure_mode_policyload boolean:
    "setsebool -P secure_mode_policyload=0".
    
    SELinux denied $SOURCE access to $TARGET_PATH.
    If this is a swapfile it has to have a file context label of
    swapfile_t. If you did not intend to use
    $TARGET_PATH as a swapfile it probably indicates a bug, however it could also
    signal a intrusion attempt.
    
    SELinux denied prelink $ACCESS on $TARGET_PATH.
    The prelink program is only allowed to manipulate files that are identified as
    executables or shared libraries by SELinux.  Libraries that get placed in
    lib directories get labeled by default as a shared library.  Similarly,
    executables that get placed in a bin or sbin directory get labeled as executables by SELinux.  However, if these files get installed in other directories
    they might not get the correct label.  If prelink is trying
    to manipulate a file that is not a binary or share library this may indicate an
    intrusion attack.  

    
    SELinux denied qemu access to $TARGET_PATH.
    If this is a virtualization image, it has to have a file context label of
    virt_image_t. The system is setup to label image files in directory./var/lib/libvirt/images
    correctly.  We recommend that you copy your image file to /var/lib/libvirt/images.
    If you really want to have your qemu image files in the current directory, you can relabel $TARGET_PATH to be virt_image_t using chcon.  You also need to execute semanage fcontext -a -t virt_image_t '$TARGET_PATH' to add this
    new path to the system defaults. If you did not intend to use $TARGET_PATH as a qemu
    image it could indicate either a bug or an intrusion attempt.
    
    SELinux denied qemu access to the block device $TARGET_PATH.
    If this is a virtualization image, it needs to be labeled with a virtualization file context (virt_image_t). You can relabel $TARGET_PATH to be virt_image_t using chcon.  You also need to execute semanage fcontext -a -t virt_image_t '$TARGET_PATH' to add this
    new path to the system defaults. If you did not intend to use $TARGET_PATH as a qemu
    image it could indicate either a bug or an intrusion attempt.
    
    SELinux denied rsync access to $TARGET_PATH.
    If this is a RSYNC repository it has to have a file context label of
    rsync_data_t. If you did not intend to use $TARGET_PATH as a rsync repository
    it could indicate either a bug or it could signal a intrusion attempt.
    
    SELinux has denied $SOURCE access to potentially
    mislabeled file(s) ($TARGET_PATH).  This means that SELinux will not
    allow $SOURCE to use these files.  It is common for users to edit
    files in their home directory or tmp directories and then move
    (mv) them to system directories.  The problem is that the files 
    end up with the wrong file context which confined applications are not allowed to access.
    
    SELinux has denied kernel module utilities from modifying
    kernel modules. This machine is hardened to not allow the kernel to
    be modified, except in single user mode.  If you did not try to
    manage a kernel module, this probably signals an intrusion.
    
    SELinux has denied the Point-to-Point Protocol daemon from
    inserting a kernel module. If pppd is not setup to insert kernel
    modules, this probably signals a intrusion attempt.
    
    SELinux has denied the squid daemon from connecting to
    $PORT_NUMBER. By default squid policy is setup to deny squid
    connections. If you did not setup squid to network connections,
    this could signal a intrusion attempt.
    
    SELinux has preventing the nfs daemon (nfsd) from writing to
    directories marked as public. Usually these directories are
    shared between multiple network daemons, like nfs, apache, ftp
    etc.  If you have not exported any public file systems for
    writing, this could signal an intrusion.
    
    SELinux is preventing $SOURCE from creating a file with a context of $SOURCE_TYPE on a filesystem.
    Usually this happens when you ask the cp command to maintain the context of a file when
    copying between file systems, "cp -a" for example.  Not all file contexts should be maintained
    between the file systems.  For example, a read-only file type like iso9660_t should not be placed
    on a r/w system.  "cp -P" might be a better solution, as this will adopt the default file context
    for the destination.  
    
    SELinux is preventing access to files with the label, file_t.
    
    SELinux is preventing the ftp daemon from reading users home directories ($TARGET_PATH).
    
    SELinux is preventing the ftp daemon from writing files outside the home directory ($TARGET_PATH).
    
    SELinux is preventing the http daemon from acting as a ftp server.
    
    SELinux is preventing the http daemon from communicating with the terminal.
    
    SELinux is preventing the http daemon from connecting to a database.
    
    SELinux is preventing the http daemon from connecting to network port $PORT_NUMBER
    SELinux is preventing the http daemon from executing a shell script
    SELinux is preventing the http daemon from executing cgi scripts.
    
    SELinux is preventing the http daemon from reading users' home directories.
    
    SELinux is preventing the http daemon from using built-in scripting.
    
    SELinux is preventing the kernel modules from being loaded.
    
    SELinux is preventing the modification of the running policy.
    
    SELinux is preventing the named daemon from writing to the zone directory
    SELinux is preventing the nfs daemon from allowing clients to write to public directories.
    
    SELinux is preventing the nfs daemon from allowing remote clients to write local files.
    
    SELinux is preventing the nfs daemon from serving r/o local files to remote clients.
    
    SELinux is preventing the ppp daemon from inserting kernel modules.
    
    SELinux is preventing the samba daemon from allowing remote clients to write local files.
    
    SELinux is preventing the samba daemon from reading nfs file systems.
    
    SELinux is preventing the samba daemon from reading users' home directories.
    
    SELinux is preventing the samba daemon from serving r/o local files to remote clients.
    
    SELinux is preventing the sasl authentication server from reading the /etc/shadow file.
    
    SELinux is preventing the spamd daemon from reading users' home directories.
    
    SELinux is preventing the squid daemon from connecting to network port $PORT_NUMBER
    SELinux is preventing the users from running TCP servers in the usedomain.
        
    SELinux policy is preventing an httpd script from writing to a public
    directory.
    
    SELinux policy is preventing the ftp daemon from writing to a public
    directory.
    
    SELinux policy is preventing the http daemon from writing to a public
    directory.
    
    SELinux policy is preventing the rsync daemon from writing to a public
    directory.
    
    SELinux policy is preventing the samba daemon from writing to a public
    directory.
    
    SELinux prevented $SOURCE from $ACCESS files stored in the mail spool directory.
    
    $SOURCE attempted to write one or more files or directories, postfix
    ordinarily does not need this access.  However it can be setup to allow 
    this.    

    If you have not configured $SOURCE to write to the mail spool
    this access attempt could signal an intrusion attempt.
    
    SELinux prevented $SOURCE from $ACCESS files stored mail spool directory.
    
    SELinux prevented $SOURCE from $ACCESS files stored on a NFS filesystem.
    NFS (Network Filesystem) is a network filesystem commonly used on Unix / Linux
    systems.
    
    $SOURCE attempted to read one or more files or directories from
    a mounted filesystem of this type.  As NFS filesystems do not support
    fine-grained SELinux labeling, all files and directories in the
    filesystem will have the same security context.
    
    If you have not configured $SOURCE to read files from a NFS filesystem
    this access attempt could signal an intrusion attempt.
    
    SELinux prevented $SOURCE from $ACCESS files stored on a NFS filesytem.
    
    SELinux prevented $SOURCE from $ACCESS files stored on a Windows SMB/CIFS (Samba) filesystem.
    CIFS is a network filesystem commonly used on Windows systems.
    
    $SOURCE attempted to read one or more files or directories from
    a mounted filesystem of this type.  As CIFS filesystems do not support
    fine-grained SELinux labeling, all files and directories in the
    filesystem will have the same security context.
    
    If you have not configured $SOURCE to read files from a CIFS filesystem
    this access attempt could signal an intrusion attempt.
    
    SELinux prevented $SOURCE from $ACCESS files stored on a Windows SMB/CIFS (Samba) filesytem.
    
    SELinux prevented $SOURCE from accessing the cron spool file.
    
    SELinux prevented $SOURCE from correctly running as a daemon.
    
    SELinux prevented $SOURCE from mounting a filesystem on the file
    or directory "$TARGET_PATH" of type "$TARGET_TYPE". By default
    SELinux limits the mounting of filesystems to only some files or
    directories (those with types that have the mountpoint attribute). The
    type "$TARGET_TYPE" does not have this attribute. You can change the 
    label of the file or directory.
    
    SELinux prevented $SOURCE from mounting a filesystem on the file
    or directory "$TARGET_PATH" of type "$TARGET_TYPE". By default
    SELinux limits the mounting of filesystems to only some files or
    directories (those with types that have the mountpoint attribute). The
    type "$TARGET_TYPE" does not have this attribute. You can either
    relabel the file or directory or set the boolean "$BOOLEAN" to true to
    allow mounting on any file or directory.
    
    SELinux prevented $SOURCE from mounting on the file or directory
    "$TARGET_PATH" (type "$TARGET_TYPE").
    
    SELinux prevented $SOURCE from reading from the urandom device.
    
    SELinux prevented $SOURCE from using NIS (yp) for
    authentication.  If you have configured the system to use NIS
    this access is expected but is not currently allowed by
    SELinux. Otherwise this access may signal an intrusion.
    
    SELinux prevented $SOURCE from using NIS (yp).
    
    SELinux prevented $SOURCE from using kerberos for
    authentication.  If you have configured the system to use kerberos
    this access is expected but is not currently allowed by
    SELinux. Otherwise this access may signal an intrusion.
    
    SELinux prevented $SOURCE from using kerberos.
    
    SELinux prevented $SOURCE from writing $TARGET_PATH.
    
    SELinux prevented a java plugin ($SOURCE_TYPE) from making the stack executable.
    
    SELinux prevented a mplayer plugin ($SOURCE_TYPE) from making the stack executable.
    
    SELinux prevented httpd $ACCESS access to http files.
    
    SELinux prevented the CVS application from reading the shadow password file.
    
    SELinux prevented the ftp daemon from $ACCESS files stored on a CIFS filesystem.
    CIFS (Comment Internet File System) is a network filesystem similar to
    SMB (<a href="http://www.microsoft.com/mind/1196/cifs.asp">http://www.microsoft.com/mind/1196/cifs.asp</a>)
    The ftp daemon attempted to read one or more files or directories from
    a mounted filesystem of this type.  As CIFS filesystems do not support
    fine-grained SELinux labeling, all files and directories in the
    filesystem will have the same security context.
    
    If you have not configured the ftp daemon to read files from a CIFS filesystem
    this access attempt could signal an intrusion attempt.
    
    SELinux prevented the ftp daemon from $ACCESS files stored on a CIFS filesytem.
    
    SELinux prevented the ftp daemon from $ACCESS files stored on a NFS filesystem.
    NFS (Network Filesystem) is a network filesystem commonly used on Unix / Linux
    systems.
    
    The ftp daemon attempted to read one or more files or directories from
    a mounted filesystem of this type.  As NFS filesystems do not support
    fine-grained SELinux labeling, all files and directories in the
    filesystem will have the same security context.
    
    If you have not configured the ftp daemon to read files from a NFS filesystem
    this access attempt could signal an intrusion attempt.
    
    SELinux prevented the ftp daemon from $ACCESS files stored on a NFS filesytem.
    
    SELinux prevented the gss daemon from reading unprivileged user temporary files.
    
    SELinux prevented the http daemon from $ACCESS files stored on a CIFS filesytem.
    
    SELinux prevented the http daemon from $ACCESS files stored on a NFS filesystem.
    NFS (Network Filesystem) is a network filesystem commonly used on Unix / Linux
    systems.
    
    The http daemon attempted to read one or more files or directories from
    a mounted filesystem of this type.  As NFS filesystems do not support
    fine-grained SELinux labeling, all files and directories in the
    filesystem will have the same security context.
    
    If you have not configured the http daemon to read files from a NFS filesystem
    this access attempt could signal an intrusion attempt.
    
    SELinux prevented the http daemon from $ACCESS files stored on a NFS filesytem.
    
    SELinux prevented the java plugin ($SOURCE_TYPE) from making the stack
    executable.  An executable stack should not be required by any
    software (see <a href="http://people.redhat.com/drepper/selinux-mem.html">SELinux Memory Protection Tests</a>
    for more information). However, some versions of the Java plugin are known
    to require this access to work properly. You should check for updates
    to the software before allowing this access.
    
    SELinux prevented the mplayer plugin ($SOURCE_TYPE) from making the stack
    executable.  An executable stack should not be required by any
    software (see <a href="http://people.redhat.com/drepper/selinux-mem.html">SELinux Memory Protection Tests</a>
    for more information). However, some versions of the mplayer plugin are known
    to require this access to work properly. You should check for updates
    to the software before allowing this access.
    
    Use a command like "cp -P" to preserve all permissions except SELinux context.
    
    You can alter the file context by executing chcon -R -t rsync_data_t '$TARGET_PATH'
    You must also change the default file context files on the system in order to preserve them even on a full relabel.  "semanage fcontext -a -t rsync_data_t '$TARGET_PATH'"
    
    You can alter the file context by executing chcon -R -t samba_share_t '$TARGET_PATH'
    You must also change the default file context files on the system in order to preserve them even on a full relabel.  "semanage fcontext -a -t samba_share_t '$TARGET_PATH'"
    
    You can alter the file context by executing chcon -t swapfile_t '$TARGET_PATH'
    You must also change the default file context files on the system in order to preserve them even on a full relabel.  "semanage fcontext -a -t swapfile_t '$TARGET_PATH'"
    
    You can alter the file context by executing chcon -t virt_image_t '$TARGET_PATH'
    You must also change the default file context files on the system in order to preserve them even on a full relabel.  "semanage fcontext -a -t virt_image_t '$TARGET_PATH'"
    
    You can alter the file context by executing chcon -t xen_image_t '$TARGET_PATH'
    You must also change the default file context files on the system in order to preserve them even on a full relabel.  "semanage fcontext -a -t xen_image_t '$TARGET_PATH'"
    
    You can execute the following command as root to relabel your
    computer system: "touch /.autorelabel; reboot"
    
    You can restore the default system context to this file by executing the
    restorecon command.  restorecon '$TARGET_PATH', if this file is a directory,
    you can recursively restore using restorecon -R '$TARGET_PATH'.
        If you want the http daemon to listen on the ftp port, you need to
    enable the $BOOLEAN boolean: "setsebool -P $BOOLEAN=1"
     Changing the "$BOOLEAN" and
    "$WRITE_BOOLEAN" booleans to true will allow this access:
    "setsebool -P $BOOLEAN=1 $WRITE_BOOLEAN=1".
    warning: setting the "$WRITE_BOOLEAN" boolean to true will
    allow the ftp daemon to write to all public content (files and
    directories with type public_content_t) in addition to writing to
    files and directories on CIFS filesystems.   Changing the "allow_ftpd_use_nfs" and
    "$WRITE_BOOLEAN" booleans to true will allow this access:
    "setsebool -P allow_ftpd_use_nfs=1 $WRITE_BOOLEAN=1".
    warning: setting the "$WRITE_BOOLEAN" boolean to true will
    allow the ftp daemon to write to all public content (files and
    directories with type public_content_t) in addition to writing to
    files and directories on NFS filesystems.  <br><br>Boolean Description:<br>%s<br><br>AuthorizationCRONCVSChoose one of the following to allow access:<br> Domain Name ServiceFTPFile LabelFile SystemJavaKernelMailMediaMemoryNetwork PortsNetworkingOne of the following booleans is set incorrectly: <b>%s</b>RSYNCSAMBASELinux prevented the gss daemon from
    reading unprivileged user temporary files (e.g., files in /tmp). Allowing this
    access is low risk, but if you have not configured the gss daemon to
    read these files this access request could signal an intrusion
    attempt.The boolean <b>%s</b> is set incorrectly. Web ServerZebraProject-Id-Version: setroubleshoot-plugins.tip.fr
Report-Msgid-Bugs-To: 
POT-Creation-Date: 2009-10-26 10:05-0400
PO-Revision-Date: 2009-04-28 22:40+0200
Last-Translator: Charles-Antoine Couret <cacouret@wanadoo.fr>
Language-Team: French <fedora-trans-fr@redhat.com>
MIME-Version: 1.0
Content-Type: text/plain; charset=UTF-8
Content-Transfer-Encoding: 8bit
X-Generator: Lokalize 0.3
Plural-Forms: nplurals=2; plural=(n > 1);


    SELinux a refusé l'accès demandé par $SOURCE. Il n'est pas
    prévu que cet accès soit requis par $SOURCE et cet accès
    peut signaler une tentative d'intrusion. Il est également possible que cette
    version ou cette configuration spécifique de l'application provoque cette demande
d'accès supplémentaire.

    

    SELinux a refusé l'accès demandé par $SOURCE. La valeur actuelle
    du booléen n'autorise pas cet accès. Si vous n'avez pas configuré $SOURCE pour
    demander cet accès, il se peut qu'il s'agisse d'une tentative d'intrusion. Si vous
    aviez prévu cet accès, vous devez changer le booléen sur ce système de manière à\     l'autoriser.
    
    Essayez restorecon -v '$TARGET_PATH' or chcon -t SIMILAR_TYPE $TARGET_PATH
    
    Changer le booléen "$BOOLEAN" sur vrai permettra cet accès :
    "setsebool -P $BOOLEAN=1"
    
    Changer le booléen "$BOOLEAN" sur vrai autorisera cet accès :
    "setsebool -P $BOOLEAN=1."
    
    Changer le booléen "allow_ftpd_use_nfs" sur vrai permettra cet accès :
    "setsebool -P allow_ftpd_use_nfs=1."
    
    Changer le contexte du fichier à mnt_t autorisera mount à monter le système de fichier :
    "chcon -t mnt_t '$TARGET_PATH'."
    Vous devez aussi changer le dossier par défaut des fichiers de contexte de votre système, même lors d'un réétiquetage complet, de manière à les préserver.  "semanage fcontext -a -t mnt_t '$TARGET_PATH'"
    
    Si vous autorisez la gestion des modules noyau sur votre machine,
    désactivez le booléen $BOOLEAN : "setsebool -P
    $BOOLEAN=0".
    
    Si vous ne souhaitez pas que SELinux empêche ftp d'écrire des fichiers à plusieurs endroits sur
    le système, vous devez activer le booléen $BOOLEAN : "setsebool -P
    $BOOLEAN=1"
    
    Si vous autorisez $TARGET_PATH à fonctionner correctement, vous pouvez changer le contexte du fichier à textrel_shlib_t. "chcon -t textrel_shlib_t
    $TARGET_PATH"
    Vous devez aussi changer le dossier par défaut des fichiers de contexte de votre système, même lors d'un réétiquetage complet, de manière à les préserver.  "semanage fcontext -a -t textrel_shlib_t '$TARGET_PATH'"
    
    
    Si vous souhaitez que $SOURCE accède à ces fichiers, vous devez
    les réétiqueter en utilisant restorecon -v '$TARGET_PATH'. Vous voudrez peut-être
    réétiqueter l'ensemble du répertoire en utilisant restorecon -R -v '$TARGET_DIR'.
    
    Si vous souhaitez que $SOURCE continue, vous devez activer le
    booléen $BOOLEAN. Remarque : Ce booléen affectera toutes
    les applications sur le système.
    
    Si vous souhaitez que le ftp autorise aux utilisateurs l'accès à leurs répertoires personnels
    vous devez activer le booléen  $BOOLEAN : "setsebool -P
    $BOOLEAN=1"
    
    Si vous souhaitez que httpd autorise les connexions à la base de données vous devez
    activer le booléen $BOOLEAN : "setsebool -P
    $BOOLEAN=1"
    
    Si vous souhaitez que httpd soit activé pour exécuter un script shell particulier,
    vous pouvez l'étiqueter avec chcon -t shell_exec_t SCRIPTFILE. Si vous
    souhaitez que httpd soit capable d'exécuter des scripts shell vous devez
    activer le booléen $BOOLEAN : "setsebool -P $BOOLEAN=1"
    
    Si vous souhaitez que httpd soit capable d'exécuter des scripts cgi, vous devez
    activer le booléen $BOOLEAN : "setsebool -P
    $BOOLEAN=1"
    
    Si vous souhaitez que httpd se connecte à des ports httpd/ftp vous devez
    activer le booléen $BOOLEAN : "setsebool -P
    $BOOLEAN=1"
    
    Si vous souhaitez que httpd se connecte aux ports réseaux vous devez
    activer le booléen httpd_can_network_network_connect : "setsebool -P
    $BOOLEAN=1"
    
    Si vous souhaitez que named démarre comme un serveur secondaire et accepte les
    transferts de zone vous devez activer le booléen  $BOOLEAN : "setsebool -P
    $BOOLEAN=1"
    
    Si vous souhaitez que ppp soit capable d'insérer des modules noyau vous devez
    activer le booléen $BOOLEAN : "setsebool -P $BOOLEAN=1"
    
    Si vous souhaitez que samba partage des répertoires personnels vous devez
    activer le booléen $BOOLEAN : "setsebool -P $BOOLEAN=1"
    
    Si vous souhaitez que samba partage des systèmes de fichiers nfs vous devez activer
    le booléen $BOOLEAN : "setsebool -P $BOOLEAN=1"
    
    Si vous souhaitez que spamd partage les répertoires personnels, vous devez
    activer le booléen $BOOLEAN : "setsebool -P $BOOLEAN=1"
    
    Si vous souhaitez que squid se connecte aux ports réseau vous devez
    activer le booléen $BOOLEAN : "setsebool -P $BOOLEAN=1"
    
    Si vous souhaitez que le démon http soit capable d'accéder au terminal, vous
    devez configurer le booléen $BOOLEAN : "setsebool -P
    $BOOLEAN=1"
    
    Si vous souhaitez que le démon http partage les répertoires personnels vous devez
    activer le booléen $BOOLEAN : "setsebool -P $BOOLEAN=1"
    
    Si vous souhaitez que le démon http utilise le scripting incorporé vous devez
    activer le booléen $BOOLEAN : "setsebool -P
    $BOOLEAN=1"
    
    Si vous souhaitez que le démon d'authentification sasl soit capable de lire
    le fichier /etc/shadow, changez le booléen $BOOLEAN : "setsebool -P
    $BOOLEAN=1".
    
    Si vous souhaitez autoriser $SOURCE à être lié à ce port
    semanage port -a -t inetd_child_t -p PROTOCOL $PORT_NUMBER,
    où PROTOCOL est soit tcp, soit udp.
    
    Si vous souhaitez que le ftp autorise aux utilisateurs l'accès à leurs répertoires personnels
    vous devez activer le booléen  $BOOLEAN : "setsebool -P
    $BOOLEAN=1"
    
    Si vous souhaitez autoriser zebra à écraser ses fichiers de configuration, vous devez
    activer le booléen $BOOLEAN : "setsebool -P
    $BOOLEAN=1"
    
    Si vous souhaitez changer le contexte du fichier de $TARGET_PATH de façon à ce qu'automounter puisse l'exécuter, vous pouvez exécuter "chcon -t bin_t '$TARGET_PATH'". Si vous souhaitez que ce changement ne soit pas affecté par un ré-étiquetage, vous devez changer le contexte du fichier de façon permanente : exécutez "semanage fcontext -a -t bin_t '$TARGET_PATH'".
    
    Si vous souhaitez exporter un système de fichiers publics qui utilise nfs, vous devez
    activer le booléen $BOOLEAN : "setsebool -P
    $BOOLEAN=1".
    
    Si vous souhaitez exporter des systèmes de fichiers nfs vous devez
    activer le booléen $BOOLEAN : "setsebool -P $BOOLEAN=1".
    
    Si vous souhaitez exporter des systèmes de fichiers en utilisant samba, vous devez activer
    le booléen $BOOLEAN : "setsebool -P $BOOLEAN=1".
    
    Si vous souhaitez exporter des systèmes de fichiers modifiables en utilisant nfs vous devez activer le booléen $BOOLEAN : "setsebool -P $BOOLEAN=1".
    
    Si vous souhaitez exporter des systèmes de fichiers modifiables en utilisant samba, vous devez activer le booléen $BOOLEAN : "setsebool -P $BOOLEAN=1".
    
    Si vous souhaitez modifier la façon dont SELinux démarre sur votre machine
    vous devez mettre la machine en mode single user et forcer
    la désactivation. Pour désactiver le booléen secure_mode_policyload :
    "setsebool -P secure_mode_policyload=0".
    
    SELinux a refusé à $SOURCE l'accès à $TARGET_PATH.
    S'il s'agit d'un fichier swap, il doit comporter un étiquetage de contexte de fichier tel que
    swapfile_t. Si vous n'avez pas l'intention d'utiliser
    $TARGET_PATH en tant que fichier swap, cela indique vraissemblablement la présence d'un bogue ; cependant il peut également
    s'agir d'une tentative d'intrusion.
    
    SELinux a empêché prelink d'$ACCESS à $TARGET_PATH.
    Le programme prelink n'est autorisé qu'à manipuler des fichiers qui sont identifiés par SELinux
    en tant qu'exécutables ou bibliothèques partagées. Les bibliothèquesplacées dans 
    les répertoires de bibliothèques sont étiquetées par défaut comme des bibliothèques partagées. De la même manière,
    les exécutables placés dans les répertoires bin ou sbin sont étiquetés comme des exécutables par SELinux. Cependant, si ces fichiers sont installés dans d'autres répertoires,
    ils peuvent ne pas avoir le même étiquetage. Si prelink essaye de
    manipuler un fichier qui n'est pas un fichier binaire ou de partager une bibliothèque, cela peut indiquer une attaque par intrusion.  

    
    SELinux a refusé à qemu l'accès à $TARGET_PATH.
    S'il s'agit d'une image XEN image, elle doit porter un étiquetage de contexte tel que
    xen_image_t. Ce système est configuré pour étiqueter les fichiers image dans /var/lib/xen/
    Nous vous recommandons de copier votre fichier image dans ce répertoire.
    Si vous souhaitez vraiment avoir votre fichier image xen dans ce répertoire, vous pouvez ré-étiqueter
    $TARGET_PATH en fichier / répertoire xen_image_t en utilisant chcon. Si vous le faites,
    vous devriez également exécuter semanage fcontext -a -t xen_image_t '$TATGET_PATH' pour ajouter ce
    nouveau chemin à la configuration par défaut du système. Si vous n'aviez pas l'intention d'utiliser $TARGET_PATH en tant
    qu'image xen, cela signifie soit un bogue, soit une tentative d'intrusion.
    
    SELinux a refusé à qemu l'accès à $TARGET_PATH.
    S'il s'agit d'une image XEN image, elle doit porter un étiquetage de contexte tel que
    xen_image_t. Ce système est configuré pour étiqueter les fichiers image dans /var/lib/xen/
    Nous vous recommandons de copier votre fichier image dans ce répertoire.
    Si vous souhaitez vraiment avoir votre fichier image xen dans ce répertoire, vous pouvez ré-étiqueter
    $TARGET_PATH en fichier / répertoire xen_image_t en utilisant chcon. Si vous le faites,
    vous devriez également exécuter semanage fcontext -a -t xen_image_t '$TATGET_PATH' pour ajouter ce
    nouveau chemin à la configuration par défaut du système. Si vous n'aviez pas l'intention d'utiliser $TARGET_PATH en tant
    qu'image xen, cela signifie soit un bug, soit une tentative d'intrusion.
    
    SELinux a refusé à rsync l'accès à $TARGET_PATH.
    S'il s'agit d'un dépôt RSYNC il doit comporter un étiquetage de contexte de fichier tel que
    rsync_data_t. Si vous n'avez pas l'intention d'utiliser $TARGET_PATH en tant que dépôt rsync
    cela peut soit signifier un bogue, soi une tentative d'intrusion.
    
    SELinux a refusé à $SOURCE l'accès à des fichiers potentiellement
    mal étiquetés ($TARGET_PATH). Cela signifie que SELinux n'autorisera pas
    $SOURCE à utiliser ces fichiers. Il est commun pour les utilisateurs de modifier
    des fichiers dans leur répertoire personnel ou dans les répertoires tmp et ensuite de
    les déplacer (mv) dans des répertoires systèmes. Le problème est que ces fichiers
    finissent avec un contexte de fichier auquel les applications confinées ne peuvent accéder.
    
    SELinux a refusé aux utilitaires de modules noyau de modifier les modules
    noyau. Cette machine est renforcée pour ne pas autoriser les modifications
     sur le noyau, sauf en mode single user. Si vous n'avez pas essayé de gérer un
    module noyau, cela signale probablement une intrusion.
    
    SELinux a refusé au démon du protocole Point-to-Point d'insérer
    un module noyau. Si pppd n'est pas configuré pour insérer des modules
    noyau, cela signale probablement une tentative d'intrusion.
    
    SELinux a refusé au démon squid de se connecter au $PORT_NUMBER.
    Par défaut la règle squid est configurée pour refuser les connexions
    squid. Si vous n'avez pas configuré squid pour les connexions réseau,
    cela pourrait signaler une tentative d'intrusion.
    
    SELinux a empêché le démon nfs (nfsd) d'écrire dans les
    répertoires marqués comme publics. Habituellement ces répertoires sont
    partagés entre plusieurs démons réseau, comme nfs, apache, ftp
    ect. Si vous n'avez pas exporté des systèmes de fichiers publics pour
    écrire, cela pourrait signaler une intrusion.
    
    SELinux empêche $SOURCE de créer un fichier avec un contexte de $SOURCE_TYPE dans un système de fichier.
    Cela se produit généralement lorsque vous demandez à la commande cp de conserver le contexte d'un fichier lorsque
    l'on copie des fichiers entre systèmes. "cp -a" par exemple. Tous les contextes de fichiers ne devraient pas être maintenus
    entre des systèmes de fichiers. Par exemple, un type de fichier en lecture seule comme iso9660_t ne devrait pas être placé dans un système
    en lecture / écriture. "cp -P" peut être une meilleure solution, car elle permettra d'adopter le contexte de fichier par défaut
    pour la destination. 
    
    SELinux empêche l'accès aux fichiers ayant l'étiquetage, file_t.
    
    SELinux empêche le démon ftp de lire les répertoires personnels des utilisateurs ($TARGET_PATH).
    
    SELinux empêche le démon ftp d'écrire des fichiers hors du répertoire personnel ($TARGET_PATH).
    
    SELinux empêche le démon http de se comporter comme un serveur ftp.
    
    SELinux empêche le démon http de communiquer avec l'interpréteur de commandes.
    
    SELinux empêche le démon http de se connecter à la base de données.
    
    SELinux empêche le démon http de se connecter au port réseau $PORT_NUMBER
    SELinux empêche le démon http d'exécuter un script shell
    SELinux empêche le démon http d'exécuter les scripts cgi
    
    SELinux empêche le démon http de lire les répertoires personnels des utilisateurs.
    
    SELinux empêche le démon http d'utiliser le scripting incorporé.
    
    SELinux empêche le chargement des modules noyau.
    
    SELinux empêche la modification de la règle de démarrage.
    
    SELInux empêche le démon named d'écrire dans le répertoire de zone.
    SELinux empêche le démon nfs d'autoriser aux clients d'écrire sur les répertoires publics.
    
    SELinux empêche le démon nfs d'autoriser aux clients distants l'écriture des fichiers locaux.
    
    SELinux empêche le démon nfs de donner aux clients distants l'accès aux fichiers locaux en mode lecture seule.
    
    SELinux empêche le démon ppp d'insérer des modules noyau.
    
    SELinux empêche le démon samba d'autoriser aux clients distants l'écriture des fichiers locaux.
    
    SELinux empêche le démon samba de lire des systèmes de fichiers nfs.
    
    SELinux empêche le démon samba de lire les répertoires personnels des utilisateurs.
    
    SELinux empêche le démon samba de donner aux clients distants l'accès aux fichiers locaux en mode lecture seule.
    
    SELinux a empêché le serveur d'authentification sasl de lire le fichier /etc/shadow.
    
    SELinux empêche le démon spamd de lire les répertoires personnels des utilisateurs.
    
    SELinux empêche le démon squid de se connecter au port réseau $PORT_NUMBER
    SELinux empêche les utilisateurs de lancer des serveurs TCP dans leur domaine utilisateur.
    
    La règle SELinux empêche un script httpd d'écrire sur un répertoire
     public.
    
    La règle SELinux empêche le démon ftp d'écrire sur un répertoire
    public.
    
    La règle SELinux empêche le démon http d'écrire sur un répertoire public.
    
    La règle SELinux empêche le démon rsync d'écrire sur un répertoire
    public.
    
    La règle SELinux a empêché le démon samba d'écrire dans un répertoire
    public.
    
    SELinux a empêché $SOURCE d'$ACCESS aux fichiers stockés dans le répertoire mail spool.
    
    $SOURCE a tenté d'écrire un ou plusieurs fichiers ou répertoires. Postfix
    n'a normalement pas besoin de cet accès. Néanmoins, il peut être paramétré de manière
    à autoriser cet accès.    
\ 
    Si vous n'avez pas configuré $SOURCE pour écrire dans le répertoire mail spool,
    cette demande d'accès pourrait signaler une tentative d'intrusion.
    
    SELinux a empêché $SOURCE d'$ACCESS aux fichiers stockés dans le répertoire mail spool.
    
    SELinux a empêché $SOURCE d'$ACCESS aux fichiers stockés sur un système de fichiers NFS.
    NFS (Network Filesystem) est un système de fichiers réseau habituellement utilisé sur des systèmes
    Unix / Linux.
    
    $SOURCE a essayé de lire un ou plusieurs fichiers ou répertoires à partir
    d'un système de fichiers monté de ce type. Comme les systèmes de fichiers NFS ne supportent pas
    l'étiquetage fin SELinux, tous les fichiers et répertoires dans le
    système de fichiers auront le même contexte de sécurité.
    
    Si vous n'avez pas configuré $SOURCE pour lire des fichiers à partir d'un système de fichiers NFS
    cette demande d'accès pourrait signaler une tentative d'intrusion.
    
    SELinux a empêché $SOURCE d'$ACCESS aux fichiers stockés sur un système de fichiers NFS.
    
    SELinux a empêché $SOURCE d'$ACCESS aux fichiers stockés sur un système de fichiers Windows SMB/CIFS (Samba).
    CIFS est un système de fichiers réseau habituellement utilisé sur les systèmes Windows.
    
    $SOURCE a essayé de lire un ou plusieurs fichiers ou répertoires à partir
    d'un système de fichiers monté de ce type. Comme les systèmes de fichiers CIFS ne supportent pas
    l'étiquetage fin SELinux, tous les fichiers et répertoires dans le
    système de fichier auront le même contexte de sécurité.
    
    Si vous n'avez pas configuré $SOURCE pour lire des fichiers à partir d'un système de fichiers CIFS
    cette demande d'accès pourrait signaler une tentative d'intrusion.
    
    SELinux a empêché $SOURCE d'$ACCESS aux fichiers stockés sur un système de fichiers Windows SMB/CIFS (Samba).
    
    SELinux a empêché $SOURCE d'accéder au fichier spool cron
    
    SELinux a empêché $SOURCE de correctement fonctionner en tant que démon.
    
    SELinux a empêché $SOURCE de monter un système de fichiers sur le fichier
    ou répertoire "$TARGET_PATH" de type "$TARGET_TYPE". Par défaut SELinux
    limite le montage de systèmes de fichiers à seulement quelques fichiers ou
    répertoires (ceux avec les types qui possèdent l'attribut point de montage). Le type
    "$TARGET_TYPE" n'a pas cet attribut. Vous pouvez changer l'étiquetage
    du fichier ou du répertoire.
    
    SELinux a empêché $SOURCE de monter un système de fichiers sur le fichier
    ou répertoire "$TARGET_PATH" de type "$TARGET_TYPE". Par défaut
    SELinux limite le montage des systèmes de fichiers à quelques fichiers ou
    répertoires (ceux avec des types ayant l'attribut mountpoint). Le
    type "$TARGET_TYPE" n'a pas cet attribut. Vous pouvez réétiqueter
    le fichier ou le répertoire ou configurer le booléen "$BOOLEAN" sur vrai pour
    autoriser le montage de fichiers ou répertoires.
    
    SELinux a empêché $SOURCE de monter le fichier ou répertoire
    "$TARGET_PATH" (type "$TARGET_TYPE").
    
    SELinux a empêché $SOURCE de lire à partir du périphérique urandom.
    
    SELinux a empêché $SOURCE d'utiliser NIS (yp) pour
    l'authentification. Si vous avez configuré le système pour utiliser NIS,
    cet accès est attendu mais n'est pas actuellement autorisé par
    SELinux. Autrement cet accès pourrait signaler une intrusion.
    
    SELinux a empêché $SOURCE d'utiliser NIS (yp).
    
    SELinux a empêché $SOURCE d'utiliser kerberos pour
    l'authentification. Si vous avez configuré le système pour utiliser kerberos
    cet accès est attendu mais n'est pas actuellement autorisé par
    SELinux. Autrement, cet accès pourrait signaler une intrusion.
    
    SELinux a empêché $SOURCE d'utiliser kerberos.
    
    SELinux a empêché $SOURCE d'écrire dans $TARGET_PATH.
    
    SELinux a empêché un plugin java ($SOURCE_TYPE) de rendre la pile exécutable.
    
    SELinux a empêché un plugin mplayer ($SOURCE_TYPE) de rendre la pile exécutable.
    
    SELinux a empêché httpd d'$ACCESS aux fichiers http.
    
    SELinux a empêché l'application CVS de lire le fichier de mots de passe en double.
    
    SELinux a empêché le démon ftp d'$ACCESS aux fichiers stockés sur un système de fichiers CIFS.
    CIFS (Comment Internet File System) est un système de fichiers réseau similaire à
    SMB (<a href="http://www.microsoft.com/mind/1196/cifs.asp">http://www.microsoft.com/mind/1196/cifs.asp</a>)
    Le démon ftp a empêché la lecture d'un ou plusieurs fichiers ou répertoires provenant d'un tel
    système de fichiers monté. Étant donné que les systèmes de fichiers CIFS ne supportent pas
    l'étiquetage fin SELinux, tous les fichiers et répertoires dans le
    système de fichiers auront le même contexte de sécurité.
    
    Si vous n'avez pas configuré le démon ftp afin de lire les fichiers provenant d'un système de fichiers CIFS
    cette demande d'accès pourrait signaler une tentative d'intrusion.
    
    SELinux a empêché le démon ftp d'$ACCESS aux fichiers stockés sur un système de fichiers CIFS.
    
    SELinux a empêché le démon ftp d'$ACCESS aux fichiers stockés sur un système de fichiers NFS.
    NFS (Network Filesystem) est un système de fichiers réseau habituellement utilisé par des systèmes
    Unix / Linux.
    
    Le démon ftp a empêché la lecture d'un ou plusieurs fichiers ou répertoires provenant d'un tel
    système de fichiers monté. Étant donné que les systèmes de fichiers NFS ne supportent pas
    l'étiquetage fin SELinux, tous les fichiers et répertoires dans le
    système de fichiers auront le même contexte de sécurité.
    
    Si vous n'avez pas configuré le démon ftp afin de lire les fichiers provenant d'un système de fichiers NFS
    cette demande d'accès pourrait signaler une tentative d'intrusion.
    
    SELinux a empêché le démon ftp d'$ACCESS aux fichiers stockés sur un système de fichiers NFS.
    
    SELinux a empêché le démon gss de lire les fichiers temporaires utilisateurs sans privilège.
    
    SELinux a empêché le démon http d'$ACCESS aux fichiers stockés sur un système de fichiers CIFS.
    
    SELinux a empêché le démon http d'$ACCESS aux fichiers stockés sur un système de fichiers NFS.
    NFS (Network Filesystem) est un système de fichiers réseau habituellement utilisé par des systèmes
    Unix / Linux.
    
    Le démon http a empêché la lecture d'un ou plusieurs fichiers ou répertoires provenant d'un tel
    système de fichiers monté. Étant donné que les systèmes de fichiers NFS ne supportent pas
    l'étiquetage fin SELinux, tous les fichiers et répertoires dans le
    système de fichiers auront le même contexte de sécurité.
    
    Si vous n'avez pas configuré le démon ftp afin de lire les fichiers provenant d'un système de fichiers NFS
    cette demande d'accès pourrait signaler une tentative d'intrusion.
    
    SELinux a empêché le démon http d'$ACCESS aux fichiers stockés sur un système de fichiers NFS.
    
    SELinux a empêché le plugin java ($SOURCE_TYPE) de rendre la pile
    exécutable. Une pile exécutable ne devrait pas être requise par un
    logiciel (voir <a href="http://people.redhat.com/drepper/selinux-mem.html">Tests de protection de la mémoire de SELinux</a>
    pour davantage d'informations). Cependant, des versions du plugin Java sont connues
    pour demander cet accès afin de fonctionner correctement. Vous devriez vérifier les mises à jour
    du logiciel avant d'autoriser cet accès.
    
    SELinux a empêché le plugin mplayer ($SOURCE_TYPE) de rendre la pile
    exécutable. Une pile exécutable ne devrait pas être requise par un
    logiciel (voir <a href="http://people.redhat.com/drepper/selinux-mem.html">Tests de protection de la mémoire de SELinux</a>
    pour davantage d'informations). Cependant, des versions du plugin mplayer sont connues
    pour demander cet accès afin de fonctionner correctement. Vous devriez vérifier les mises à jour
    du logiciel avant d'autoriser cet accès.
    
    Utilisez une commande comme "cp -P" pour préserver toutes les permissions sauf le contexte de SELinux.
    
    Vous pouvez changer le contexte du fichier en exécutant chcon -R -t rsync_data_t '$TARGET_PATH'
    Vous devez aussi changer le dossier par défaut des fichiers de contexte de votre système, même lors d'un réétiquetage complet, de manière à les préserver.  "semanage fcontext -a -t rsync_data_t '$TARGET_PATH'"
    
    Vous pouvez modifier le contexte de fichier en exécutant chcon -R -t samba_share_t '$TARGET_PATH'
    Vous devez aussi changer le dossier par défaut des fichiers de contexte de votre système, même lors d'un réétiquetage complet, de manière à les préserver.  "semanage fcontext -a -t samba_share_t '$TARGET_PATH'"
    
    Vous pouvez modifier le contexte du fichier en exécutant chcon - swapfile_t '$TARGET_PATH'
    Vous devez aussi changer le dossier par défaut des fichiers de contexte de votre système, même lors d'un réétiquetage complet, de manière à les préserver.  "semanage fcontext -a -t swapfile_t '$TARGET_PATH'"
    
    Vous pouvez modifier le contexte du fichier en exécutant chcon -t xen_image_t '$TARGET_PATH'
    Vous devez aussi changer le dossier par défaut des fichiers de contexte de votre système, même lors d'un ré-étiquetage complet, de manière à les préserver.  "semanage fcontext -a -t xen_image_t '$TARGET_PATH'"
    
    Vous pouvez modifier le contexte du fichier en exécutant chcon -t xen_image_t '$TARGET_PATH'
    Vous devez aussi changer le dossier par défaut des fichiers de contexte de votre système, même lors d'un réétiquetage complet, de manière à les préserver.  "semanage fcontext -a -t xen_image_t '$TARGET_PATH'"
    
    Vous pouvez exécuter la commande suivante en tant que super-utilisateur
    pour ré-étiqueter le système de votre ordinateur : "touch /.autorelabel; reboot"
    
    Vous pouvez restaurer le contexte par défaut du système sur ce fichier en exécutant la
    commande restorecon. restorecon '$TARGET_PATH'. Si ce fichier est un répertoire,
    vous pouvez restaurer le contexte récursivement en utilisant restorecon -R '$TARGET_PATH'.
        Si vous souhaitez que le démon http écoute sur un port ftp, vous devez
    activer le booléen $BOOLEAN : "setsebool -P $BOOLEAN=1"
     Le changement des booléens "$BOOLEAN" et
    "$WRITE_BOOLEAN" sur vrai autorisera cet accès :
    "setsebool -P $BOOLEAN=1 $WRITE_BOOLEAN=1".
    avertissement : mettre le booléen "$WRITE_BOOLEAN" sur vrai
    autorisera le démon ftp à écrire dans tous les contenus publics (fichiers et
    répertoires avec le type public_content_t) en plus d'écrire dans
    les fichiers et répertoires du système de fichiers CIFS.   Le changement des booléens "allow_ftpd_use_nfs" et
    "$WRITE_BOOLEAN" sur vrai autorisera cet accès :
    "setsebool -P allow_ftpd_use_nfs=1 $WRITE_BOOLEAN=1".
    avertissement : mettre le booléen "$WRITE_BOOLEAN" sur vrai
    autorisera le démon ftp à écrire dans tous les contenus publics (fichiers et
    répertoires avec le type public_content_t) en plus d'écrire dans
    les fichiers et répertoires du système de fichiers NFS.  <br><br>Description du booléen : <br>%s<br><br>AutorisationCRONCVSChoisissez-en un pour autoriser l'accès : <br>Service de nom de domaineFTPÉtiquette de fichierSystème de fichiersJavaNoyauMailMediaMémoirePorts réseauxRéseauL'un des booléens suivants est incorrectement défini : <b>%s</b>RSYNCSAMBASELinux a empêché le démon gss de
    lire les fichiers temporaires utilisateurs sans privilège (par exemple les fichiers dans /tmp). Autoriser
     cet accès n'est pas très risqué mais si vous n'avez pas configuré le démon gss pour la
    lecture de ces fichiers, cette demande d'accès pourrait signaler une tentative
    d'intrusion.Le booléens <b>%s</b> est incorrectement défini.Serveur webZebra

Youez - 2016 - github.com/yon3zu
LinuXploit