Bug 1052971 - Allow virt_use_fusefs
Summary: Allow virt_use_fusefs
Keywords:
Status: CLOSED ERRATA
Alias: None
Product: Red Hat OpenStack
Classification: Red Hat
Component: openstack-selinux
Version: 4.0
Hardware: x86_64
OS: Linux
high
high
Target Milestone: rc
: 5.0 (RHEL 7)
Assignee: Ryan Hallisey
QA Contact: Dafna Ron
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2014-01-14 14:15 UTC by Dafna Ron
Modified: 2016-04-26 17:18 UTC (History)
14 users (show)

Fixed In Version: openstack-selinux-0.5.0-2.el7ost
Doc Type: Bug Fix
Doc Text:
Clone Of: 1015625
Environment:
Last Closed: 2014-07-08 15:12:45 UTC
Target Upstream Version:
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Launchpad 1235331 0 None None None Never
OpenStack gerrit 66592 0 None None None Never
Red Hat Product Errata RHEA-2014:0845 0 normal SHIPPED_LIVE Red Hat Enterprise Linux OpenStack Platform Enhancement - Runtime Components 2014-07-08 19:11:27 UTC

Comment 1 Martin Magr 2014-01-14 14:21:28 UTC
All selinux related fixes should be in openstack-selinux package IMHO ... and not in packstack / foreman.

Comment 2 Martin Magr 2014-01-14 14:24:47 UTC
And reading "Additional comment from Jason Guiditta on 2013-12-09 11:31:50 EST" it seems that this fix is already in openstack-selinux, hence closing.

Comment 3 Dafna Ron 2014-01-14 14:38:15 UTC
no it's not. 
we tested it today: 
[root@nott-vdsa ~]# getsebool -a |grep fuse
ftpd_use_fusefs --> off
httpd_use_fusefs --> off
samba_share_fusefs --> off
sanlock_use_fusefs --> off
use_fusefs_home_dirs --> off
virt_use_fusefs --> off

reopening

Comment 6 Martin Magr 2014-01-16 17:01:19 UTC
According to Giulio's patch virt_use_fusefs should be set on. Could you please add this to openstack-selinux package? Thanks in advance

Comment 9 Yogev Rabl 2014-06-26 14:09:55 UTC
verified in:

openstack-packstack-2014.1.1-0.27.dev1184.el7ost.noarch
openstack-packstack-puppet-2014.1.1-0.27.dev1184.el7ost.noarch

Comment 11 errata-xmlrpc 2014-07-08 15:12:45 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory, and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

http://rhn.redhat.com/errata/RHEA-2014-0845.html


Note You need to log in before you can comment on or make changes to this bug.