[Aide] Capturing changes in directory but a privileged subdirectory

Hannes von Haugwitz hannes at vonhaugwitz.com
Thu Jun 9 00:25:14 EEST 2016


Hi,

On Tue, Jun 07, 2016 at 06:28:36AM +0200, Hannes von Haugwitz wrote:
> On Mon, Jun 06, 2016 at 10:23:31PM -0500, John Kristoff wrote:
> > I'm using 0.16b1 on a Linux machiine and trying to do something like
> > this in an aide.conf:
> > 
> >   /boot  R
> >   !/boot/lost\+found
> > 
> > I'm initializing the database and running as an unprivileged user.  I'm
> > struggling to figure out how to exclude the priviledged (root only)
> > lost+found directories (and others like it) from being accessed by AIDE,
> > because I'm getting errors like this:
> > 
> >   open_dir(): Permission denied: /boot/lost+found
> 
> I can reproduce your issue; it seems to be a bug at a first glance. I'll
> look into it and report back.

I (hopefully) fixed your issue in git fe17bdd [0]. Please try and report back if
it works or not.

Best regards

Hannes

[0] https://sourceforge.net/p/aide/code/ci/fe17bddce77468e69241796c745d84cbbff7fa05/


More information about the Aide mailing list