Bug 2128843

Summary: add support for the 'local' parameter
Product: Red Hat Enterprise Linux 9 Reporter: Rich Megginson <rmeggins>
Component: rhel-system-rolesAssignee: Rich Megginson <rmeggins>
Status: CLOSED ERRATA QA Contact: Evgeny Fedin <efedin>
Severity: unspecified Docs Contact: Mirek Jahoda <mjahoda>
Priority: unspecified    
Version: 9.2CC: djez, efedin, spetrosi
Target Milestone: rcKeywords: Triaged
Target Release: 9.2   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard: role:selinux
Fixed In Version: rhel-system-roles-1.21.0-0.3.ssh_sshd_selinux_timesync.el9 Doc Type: Enhancement
Doc Text:
.The `selinux` RHEL System Role now supports the `local` parameter This update of the `selinux` RHEL System Role introduces support for the `local` parameter. By using this parameter, you can remove only your local policy modifications and preserve the built-in SELinux policy.
Story Points: ---
Clone Of:
: 2143385 (view as bug list) Environment:
Last Closed: 2023-05-09 07:37:53 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On:    
Bug Blocks: 2143385    

Description Rich Megginson 2022-09-21 16:04:44 UTC
The role needs to support the 'local' parameter for use cases when the user wants to remove policy but does not know if it is built-in - see https://github.com/linux-system-roles/selinux/pull/124

Comment 11 errata-xmlrpc 2023-05-09 07:37:53 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory (rhel-system-roles bug fix and enhancement update), and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHEA-2023:2246