mknod fails for /var/log/ntpstats/sysstats.2010w17

Bug #574343 reported by Richard Croy
10
This bug affects 1 person
Affects Status Importance Assigned to Milestone
ntp (Ubuntu)
Fix Released
Medium
Jamie Strandboge
Lucid
Won't Fix
Medium
Chuck Short
Maverick
Fix Released
Medium
Jamie Strandboge

Bug Description

Binary package hint: ntp

In my /var/log/syslog (on Lucid) I am getting the following errors:

May 3 21:45:48 canopus kernel: [10822.162261] type=1503 audit(1272879948.846:20): operation="mknod" pid=1237 parent=1 profile="/usr/sbin/ntpd" requested_mask="c::" denied_mask="c::" fsuid=115 ouid=115 name="/var/log/ntpstats/sysstats.2010w17"

They occur once every hour.

ntp: 4.2.4p8+dfsg-1ubuntu2
Linux 2.6.32-21-generic-pae #32-Ubuntu SMP
Ubuntu 10.04

ProblemType: Bug
DistroRelease: Ubuntu 10.04
Package: ntp 1:4.2.4p8+dfsg-1ubuntu2
ProcVersionSignature: Ubuntu 2.6.32-21.32-generic-pae 2.6.32.11+drm33.2
Uname: Linux 2.6.32-21-generic-pae i686
NonfreeKernelModules: nvidia
Architecture: i386
Date: Mon May 3 21:27:20 2010
InstallationMedia: Ubuntu 10.04 "Lucid Lynx" - Release Candidate i386 (20100419.1)
ProcEnviron:
 LANG=en_NZ.utf8
 SHELL=/bin/bash
SourcePackage: ntp
mtime.conffile..etc.ntp.conf: 2010-05-03T18:11:51

Tags: apparmor

Related branches

Revision history for this message
Richard Croy (richard-croy-gmail) wrote :
Revision history for this message
Jamie Strandboge (jdstrand) wrote :

Richard, can you add to /etc/apparmor.d/usr.sbin.ntpd:
  /var/log/ntpstats/peerstats* rwl,

Then perform:
$ sudo apparmor_parser -r /etc/apparmor.d/usr.sbin.ntpd

And report back if it fixes the problem for you?

tags: added: apparmor
removed: apport-bug i386 lucid
Changed in ntp (Ubuntu):
assignee: nobody → Jamie Strandboge (jdstrand)
status: New → Incomplete
Revision history for this message
Richard Croy (richard-croy-gmail) wrote :

No luck, it seems:

May 4 19:33:22 canopus kernel: [89276.033238] type=1505 audit(1272958402.718:44): operation="profile_replace" pid=25336 name="/usr/sbin/ntpd"
May 4 19:45:48 canopus kernel: [90022.162272] type=1503 audit(1272959148.846:45): operation="mknod" pid=1237 parent=1 profile="/usr/sbin/ntpd" requested_mask="c::" denied_mask="c::" fsuid=115 ouid=115 name="/var/log/ntpstats/sysstats.2010w17"

I will check my changes again later tonight.

Revision history for this message
Richard Croy (richard-croy-gmail) wrote :

Looking at it again I think the additional line you meant to add was
     /var/log/ntpstats/sysstats* rwl,

So I did that and the problem is gone.

May 4 20:17:53 canopus kernel: [91947.164688] type=1505 audit(1272961073.850:46): operation="profile_replace" pid=25409 name="/usr/sbin/ntpd"
...[quiet through the 20:45:48 time when the error would be expected]

Lock it in!
Cheers.

Revision history for this message
Jamie Strandboge (jdstrand) wrote :

Oh, heh, yes that is obviously what I meant. Thanks for reporting back! :)

Changed in ntp (Ubuntu):
status: Incomplete → Triaged
Revision history for this message
Jamie Strandboge (jdstrand) wrote :

Attaching debdiff for lucid-proposed. Talked to Chuck Short who said he will incorporate this into a larger SRU update. Chuck, feel free to ping me and I can pocket copy this to maverick.

Changed in ntp (Ubuntu):
importance: Undecided → Medium
milestone: none → lucid-updates
status: Triaged → In Progress
Changed in ntp (Ubuntu Maverick):
status: In Progress → Triaged
Changed in ntp (Ubuntu Lucid):
importance: Undecided → Medium
importance: Medium → Low
status: New → In Progress
assignee: nobody → Jamie Strandboge (jdstrand)
importance: Low → Medium
milestone: none → lucid-updates
Changed in ntp (Ubuntu Maverick):
assignee: Jamie Strandboge (jdstrand) → nobody
milestone: lucid-updates → none
Revision history for this message
Jamie Strandboge (jdstrand) wrote :

I just went ahead and uploaded 4.2.4p8+dfsg-1ubuntu3 with this patch to maverick, which should help with Chuck's SRU.

Changed in ntp (Ubuntu Maverick):
status: Triaged → In Progress
assignee: nobody → Jamie Strandboge (jdstrand)
Changed in ntp (Ubuntu Lucid):
assignee: Jamie Strandboge (jdstrand) → Chuck Short (zulcss)
Changed in ntp (Ubuntu Maverick):
status: In Progress → Fix Committed
Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package ntp - 1:4.2.4p8+dfsg-1ubuntu3

---------------
ntp (1:4.2.4p8+dfsg-1ubuntu3) maverick; urgency=low

  * debian/apparmor-profile: allow access to /var/log/ntpstats/sysstats*
    (LP: #574343)
 -- Jamie Strandboge <email address hidden> Fri, 18 Jun 2010 07:54:24 -0500

Changed in ntp (Ubuntu Maverick):
status: Fix Committed → Fix Released
Revision history for this message
Rolf Leggewie (r0lf) wrote :

lucid has seen the end of its life and is no longer receiving any updates. Marking the lucid task for this ticket as "Won't Fix".

Changed in ntp (Ubuntu Lucid):
status: In Progress → Won't Fix
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.