building compose, selinux problems

Ian Malone ibmalone at gmail.com
Tue Aug 14 07:49:15 UTC 2012


Hi,

I'm trying to build a spin on F16 against F17 (specifically the
fedora-jam spin, ssh://git.fedorahosted.org/git/music-creation
spin-kickstarts/fedora-jam/fedora-live-jam-kde.ks, with the
mono-bristol package removed).

I'm using the command:
# setenforce 0
# livecd-creator --config=/home/.../fedora-live-jam-kde.ks
--releasever=17 -f Fedora17-Jam --cache=/var/cache/live

When attempting to run it I get stopped at the KDE login, with selinux
denials on kdm.

During the build I get this (just after the man page building):
7762 manual pages were added.
0 stray cats were added.
0 old database entries were purged.
/tmp/ks-script-MWTJ2X: line 33: warning: here-document at line 31
delimited by end-of-file (wanted `EOF')
/etc/selinux/targeted/contexts/files/file_contexts: line 135 has
invalid context system_u:object_r:svnserve_initrc_exec_t:s0
/etc/selinux/targeted/contexts/files/file_contexts: line 356 has
invalid context system_u:object_r:tuned_etc_t:s0
/etc/selinux/targeted/contexts/files/file_contexts: line 361 has
invalid context system_u:object_r:passwd_file_t:s0
/etc/selinux/targeted/contexts/files/file_contexts: line 441 has
invalid context system_u:object_r:passwd_file_t:s0
/etc/selinux/targeted/contexts/files/file_contexts: line 454 has
invalid context system_u:object_r:dbus_home_t:s0
/etc/selinux/targeted/contexts/files/file_contexts: line 471 has
invalid context system_u:object_r:zoneminder_var_lib_t:s0
/etc/selinux/targeted/contexts/files/file_contexts: line 547 has
invalid context system_u:object_r:bitlbee_log_t:s0
/etc/selinux/targeted/contexts/files/file_contexts: line 553 has
invalid context system_u:object_r:couchdb_etc_t:s0
/etc/selinux/targeted/contexts/files/file_contexts: line 579 has
invalid context system_u:object_r:pacemaker_var_run_t:s0
Exiting after 10 errors.

And at the very end this:
umount: /var/tmp/imgcreate-OhFs6F/install_root/sys/fs/selinux/load: not found

The umount thing looks like this:
https://bugzilla.redhat.com/show_bug.cgi?id=737064

/var/log/messages on the overlay contains these:
SELinux is preventing /usr/bin/kdm from entrypoint access on the file
/etc/kde/kdm/Xsession.

Putting the iso onto disk using:
/media/liveos/LiveOS/livecd-iso-to-disk --overlay-size-mb 1024
Fedora17-Jam.iso /dev/sdc1

If I put .autorelabel in the root of the overlay (on a live USB) then
the spin works okay after a relabel and reboot. Is this likely to be a
general problem, specific to this spin or to do with building an F17
compose on a F16 machine? The F16 system is up to date, repos I'm
using for the build are updates and fedora.

Thanks for your time.
-- 
imalone
http://ibmalone.blogspot.co.uk


More information about the devel mailing list