Bug 1660798
Summary: | NFSv4.2: security label of mount point shows as "unlabeled_t" for ~30 seconds after mounting | ||||||
---|---|---|---|---|---|---|---|
Product: | Red Hat Enterprise Linux 8 | Reporter: | Renaud Métrich <rmetrich> | ||||
Component: | kernel | Assignee: | Scott Mayhew <smayhew> | ||||
kernel sub component: | NFS | QA Contact: | Zhi Li <yieli> | ||||
Status: | CLOSED ERRATA | Docs Contact: | |||||
Severity: | high | ||||||
Priority: | high | CC: | bcodding, dwysocha, omosnace, pasik, sdsmall, smayhew, swhiteho, xzhou, yieli, yoyang | ||||
Version: | --- | Keywords: | Patch, Reproducer | ||||
Target Milestone: | rc | ||||||
Target Release: | 8.3 | ||||||
Hardware: | All | ||||||
OS: | Linux | ||||||
Whiteboard: | |||||||
Fixed In Version: | kernel-4.18.0-221.el8 | Doc Type: | If docs needed, set a value | ||||
Doc Text: | Story Points: | --- | |||||
Clone Of: | 1625955 | Environment: | |||||
Last Closed: | 2020-11-04 00:51:49 UTC | Type: | Bug | ||||
Regression: | --- | Mount Type: | --- | ||||
Documentation: | --- | CRM: | |||||
Verified Versions: | Category: | --- | |||||
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |||||
Cloudforms Team: | --- | Target Upstream Version: | |||||
Embargoed: | |||||||
Attachments: |
|
Description
Renaud Métrich
2018-12-19 09:33:58 UTC
*** Bug 1652463 has been marked as a duplicate of this bug. *** There is nothing confidential in this BZ nor its description - opening it to the public. Also, this should be assigned to kernel, not nfs-utils... Again, some triage required Upstream fix posted here: https://lore.kernel.org/selinux/20200303225837.1557210-1-smayhew@redhat.com/ Patch merged here https://git.kernel.org/pub/scm/linux/kernel/git/pcmoore/selinux.git/commit/?id=28d4d0e16f09c1865e2ec8a7d89ca7057a5cf7ae This will either need to go on top of the mount api changes (bug 1801202) or we'll need a RHEL-specific patch. For z-stream, we'll definitely need a RHEL-specific patch. Created attachment 1669982 [details]
RHEL-specific patch
This patch is actually against upstream v5.5, but applies cleanly against RHEL 8.2. If we wanted to use this patch, then there will be a few conflicts to fix when backporting the mount api changes.
(In reply to Scott Mayhew from comment #8) > Created attachment 1669982 [details] > RHEL-specific patch > > This patch is actually against upstream v5.5, but applies cleanly against > RHEL 8.2. If we wanted to use this patch, then there will be a few > conflicts to fix when backporting the mount api changes. My understanding is that you tend to fix this issue based on the mount API changes (bug 1801202). Patch(es) available on kernel-4.18.0-221.el8 Moving to VERIFIED according to comment#16. Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory (Moderate: kernel security, bug fix, and enhancement update), and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHSA-2020:4431 |