Bug 678293

Summary: selinux permission problem in save restore flow
Product: Red Hat Enterprise Linux 6 Reporter: Moran Goldboim <mgoldboi>
Component: libvirtAssignee: Laine Stump <laine>
Status: CLOSED CURRENTRELEASE QA Contact: Virtualization Bugs <virt-bugs>
Severity: unspecified Docs Contact:
Priority: unspecified    
Version: 6.1CC: dallan, eblake, hateya, xen-maint, yoyzhang
Target Milestone: rcKeywords: Regression
Target Release: ---   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard:
Fixed In Version: Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2011-03-01 16:39:56 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Attachments:
Description Flags
libvirt log none

Description Moran Goldboim 2011-02-17 13:37:59 UTC
Created attachment 479324 [details]
libvirt log

Description of problem:
trying to save restore a domain using rhevm/vdsm domain wasn't coming back after restore:
type=AVC msg=audit(1297949226.201:7881): avc:  denied  { relabelfrom } for  pid=8345 comm="libvirtd" name="" dev=pipefs ino=3649275 scontext=unconfined_u:system_r:virtd_t:s0-s0:c0.c1023 tcontext=unconfined_u:system_r:virtd_t:s0-s0:c0.c1023 tclass=fifo_file

Version-Release number of selected component (if applicable):
libvirt-0.8.7-6.el6.x86_64
vdsm-4.9-48.el6.x86_64
kernel-2.6.32-94.el6.x86_64

How reproducible:
always

Steps to Reproduce:
1.start a vm 
2.save it
3.restore it
  
Actual results:
domain isn't restarted

Expected results:


Additional info:
disabling selinux operation is working

Comment 3 Haim 2011-03-01 16:39:56 UTC
works on latest builds with new selinux policy on both nfs and iscsi.

packages listed below:

libvirt-0.8.7-8.el6.x86_64
vdsm-4.9-51.1.el6.x86_64
libselinux-ruby-2.0.94-3.el6.x86_64
libselinux-debuginfo-2.0.94-3.el6.x86_64
selinux-policy-targeted-3.7.19-70.el6.noarch
libselinux-2.0.94-3.el6.x86_64
libselinux-utils-2.0.94-3.el6.x86_64
libselinux-python-2.0.94-3.el6.x86_64
libselinux-static-2.0.94-3.el6.x86_64
selinux-policy-3.7.19-70.el6.noarch
libselinux-devel-2.0.94-3.el6.x86_64