Bug 1937300
Summary: | Backport fix for BZ#1779052 | ||
---|---|---|---|
Product: | [Red Hat Storage] Red Hat Gluster Storage | Reporter: | Lev Veyde <lveyde> |
Component: | selinux | Assignee: | Rinku <rkothiya> |
Status: | CLOSED ERRATA | QA Contact: | SATHEESARAN <sasundar> |
Severity: | medium | Docs Contact: | |
Priority: | urgent | ||
Version: | rhhiv-1.8 | CC: | godas, lvrabec, mmalik, plautrba, pprakash, puebele, rcyriac, rhs-bugs, rkothiya, sheggodu, ssekidde, tshacked |
Target Milestone: | --- | Keywords: | ZStream |
Target Release: | RHGS 3.5.z Batch Update 4 | ||
Hardware: | x86_64 | ||
OS: | Linux | ||
Whiteboard: | |||
Fixed In Version: | glusterfs-selinux-1.0-3 | Doc Type: | No Doc Update |
Doc Text: | Story Points: | --- | |
Clone Of: | Environment: | ||
Last Closed: | 2021-04-29 07:21:03 UTC | Type: | Bug |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: | |||
Bug Depends On: | |||
Bug Blocks: | 1779052 |
Description
Lev Veyde
2021-03-10 10:22:32 UTC
If I remember correctly, there is a glusterfs-selinux component which brings SELinux policy module dedicated to gluster environments and which is separate from selinux-policy component. Why should be the SELinux denials triggered by glusterd process fixed in selinux-policy component? Information for package glusterfs-selinux: * https://brewweb.engineering.redhat.com/brew/packageinfo?packageID=74592 (In reply to Milos Malik from comment #1) > If I remember correctly, there is a glusterfs-selinux component which brings > SELinux policy module dedicated to gluster environments and which is > separate from selinux-policy component. Why should be the SELinux denials > triggered by glusterd process fixed in selinux-policy component? Changing component as suggested. Verified with glusterfs-selinux-1.0-3 Created a set of 3 RHGS 3.5.4 servers installed with glusterfs-6.0-55.el8rhgs, and new volume is created & started. After all volume operations, also after power cycling the node, there are no AVC errors seen Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory (glusterfs bug fix and enhancement update), and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHBA-2021:1462 |