Bug 2007314

Summary: [OSP-17][CentOS-9]Spawning instance with vTPM driver results in error with selinux denials
Product: Red Hat OpenStack Reporter: Pavan <pkesavar>
Component: openstack-tripleo-heat-templatesAssignee: Cédric Jeanneret <cjeanner>
Status: CLOSED DUPLICATE QA Contact: David Rosenfeld <drosenfe>
Severity: high Docs Contact:
Priority: medium    
Version: 17.0 (Wallaby)CC: alifshit, bstinson, cjeanner, igallagh, jjoyce, jparker, jpichon, jschluet, jwboyer, kchamart, lhh, lvrabec, mariel, mburns, michele, mmalik, rheslop, slinaber, smooney, tvignaud
Target Milestone: gaKeywords: Triaged
Target Release: 17.1   
Hardware: Unspecified   
OS: Linux   
Whiteboard:
Fixed In Version: puppet-tripleo-14.2.3-1.20220802084432.47e76e9.el9ost openstack-tripleo-heat-templates-14.3.1-1.20220823151141.f7e97cb.el9ost Doc Type: Bug Fix
Doc Text:
Before this update, instances with an emulated Trusted Platform Module (TPM) device could not be created due to an issue with the SElinux configuration in the `nova_libvirt` container. With this update, the deployment tooling configures SElinux correctly, which resolves the issue.
Story Points: ---
Clone Of: Environment:
Last Closed: 2023-08-15 15:28:30 UTC Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On:    
Bug Blocks: 1782128    

Comment 17 Cédric Jeanneret 2021-11-30 13:18:43 UTC
Patches merged upstream, waiting for some import to happen.

Comment 18 Cédric Jeanneret 2021-11-30 13:42:04 UTC
Actually, MODIFIED: we have a complete FIV.

Comment 25 Artom Lifshitz 2022-08-22 17:53:47 UTC
This will need a bug fix doctext since https://bugzilla.redhat.com/show_bug.cgi?id=2120383 has been filed to track the known issue.