Bug 984903
Summary: | system-config-kdump needs write access to /boot/efi/EFI/redhat/grub.cfg | ||
---|---|---|---|
Product: | Red Hat Enterprise Linux 6 | Reporter: | Martin Milata <mmilata> |
Component: | selinux-policy | Assignee: | Miroslav Grepl <mgrepl> |
Status: | CLOSED ERRATA | QA Contact: | Michal Trunecka <mtruneck> |
Severity: | unspecified | Docs Contact: | |
Priority: | unspecified | ||
Version: | 6.4 | CC: | dwalsh, ebenes, mmalik, mmilata, mtruneck, rwright |
Target Milestone: | rc | ||
Target Release: | --- | ||
Hardware: | All | ||
OS: | Linux | ||
Whiteboard: | |||
Fixed In Version: | selinux-policy-3.7.19-210.el6 | Doc Type: | Bug Fix |
Doc Text: | Story Points: | --- | |
Clone Of: | Environment: | ||
Last Closed: | 2013-11-21 10:45:41 UTC | Type: | Bug |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: | |||
Bug Depends On: | |||
Bug Blocks: | 977981 |
Description
Martin Milata
2013-07-16 10:26:59 UTC
Martin, could you please check if the bug is fixed in the current policy? (selinux-policy-3.7.19-210.el6.noarch or higher) You can get the selinux-policy packages from Brew or from here: http://people.redhat.com/dwalsh/SELinux/RHEL6/noarch/ (In reply to Michal Trunecka from comment #4) > Martin, could you please check if the bug is fixed in the current policy? I'm sorry, I already returned the EFI laptop I tested this on. Ok, we'll leave just as policy check. Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. http://rhn.redhat.com/errata/RHBA-2013-1598.html (In reply to errata-xmlrpc from comment #8) I've read the erratum at http://rhn.redhat.com/errata/RHBA-2013-1598.html but I'm unclear on whether the selinux policy changes described in this erratum will be included in future RHEL6.x versions. Can you clarify please when these policy changes are integrated into new versions? -fs_read_dos_files(kdumpgui_t) +fs_manage_dos_files(kdumpgui_t) has been added to RHEL6.5. So s-c-kdump is allowed to manage files on dosfs_t. |