Bug 2070569

Summary: SELinux is preventing /usr/libexec/qemu-kvm from create access on the netlink_rdma_socket labeled svirt_t [rhel-9.1.0]
Product: Red Hat Enterprise Linux 9 Reporter: RHEL Program Management Team <pgm-rhel-tools>
Component: selinux-policyAssignee: Zdenek Pytela <zpytela>
Status: CLOSED ERRATA QA Contact: Milos Malik <mmalik>
Severity: high Docs Contact:
Priority: high    
Version: 9.0CC: fjin, lvrabec, mmalik, pvlasin, ssekidde, xiaohli, xuzhang, zpytela
Target Milestone: rcKeywords: Reopened, TestBlocker, Triaged
Target Release: 9.1Flags: pm-rhel: mirror+
Hardware: Unspecified   
OS: Linux   
Whiteboard:
Fixed In Version: selinux-policy-34.1.30-2.el9 Doc Type: No Doc Update
Doc Text:
Story Points: ---
Clone Of: 2063612 Environment:
Last Closed: 2022-11-15 11:13:17 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On: 2063612    
Bug Blocks:    

Comment 1 Zdenek Pytela 2022-03-31 17:19:38 UTC
Commit to backport:
commit 346a697bb6a47c70f5e8a6755374b7c4771f8426
Author: Zdenek Pytela <zpytela>
Date:   Wed Mar 30 12:45:39 2022 +0200

    Allow qemu-kvm create and use netlink rdma sockets

Comment 2 Zdenek Pytela 2022-04-05 13:23:32 UTC

*** This bug has been marked as a duplicate of bug 2063612 ***

Comment 10 errata-xmlrpc 2022-11-15 11:13:17 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory (selinux-policy bug fix and enhancement update), and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHBA-2022:8283