selinux issue with containers

Zbigniew Jędrzejewski-Szmek zbyszek at in.waw.pl
Wed May 28 21:26:00 UTC 2014


On Wed, May 28, 2014 at 01:52:23PM -0400, Daniel J Walsh wrote:
> 
> On 05/28/2014 01:40 PM, Richard W.M. Jones wrote:
> > On Wed, May 28, 2014 at 06:32:04PM +0200, Zbigniew Jędrzejewski-Szmek wrote:
> >> On Wed, May 28, 2014 at 10:41:45AM -0400, Daniel J Walsh wrote:
> >>> Yum -y update your entire computer and yum reinstall
> >>> selinux-policy-targeted  Should fix the problem.
> >> Nope. No effect afaict. Any pointers how to debug this?
> > Does it list any AVCs if you run this command shortly after the
> > failure?
No. I only have some unrelated SERVICE_START/SERVICE_STOP messages from systemd-tmpfiles.

> > # ausearch -ts recent -m avc
<no matches>

> rpm -q selinux-policy-targeted
selinux-policy-targeted-3.13.1-55.fc21.noarch

I now tried with a new rawhide VM and I get identical
results.

> This looks like the old bug we had with a bad selinux policy update.
Yes.

Zbyszek


More information about the devel mailing list