Bug 1134922 - ami-3200d95a 6.6 x86_64 access us-east-1
Summary: ami-3200d95a 6.6 x86_64 access us-east-1
Keywords:
Status: CLOSED NOTABUG
Alias: None
Product: Cloud Image Validation
Classification: Red Hat
Component: images
Version: RHEL6.6
Hardware: x86_64
OS: Linux
unspecified
unspecified
Target Milestone: ---
Assignee: mkovacik
QA Contact: mkovacik
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2014-08-28 13:12 UTC by Martin Minar
Modified: 2016-07-04 00:58 UTC (History)
1 user (show)

Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Clone Of:
Environment:
Last Closed: 2014-11-28 13:28:36 UTC
Target Upstream Version:
Embargoed:


Attachments (Terms of Use)
ami-3200d95a-log.yaml (452.85 KB, text/yaml)
2014-08-28 13:12 UTC, Martin Minar
no flags Details

Description Martin Minar 2014-08-28 13:12:30 UTC

Comment 1 Martin Minar 2014-08-28 13:12:37 UTC
Created attachment 931959 [details]
ami-3200d95a-log.yaml

Comment 2 Martin Minar 2014-08-28 13:12:39 UTC
# m1.large: failed
stage1:testcase_01_bash_history: passed
stage1:testcase_02_selinux_context: passed
stage1:testcase_03_running_services: passed
stage1:testcase_04_cloud_firstboot: passed
stage1:testcase_05_grub: passed
stage1:testcase_06_inittab: passed
stage1:testcase_07_libc6_xen_conf: passed
stage1:testcase_08_memory: passed
stage1:testcase_09_nameserver: passed
stage1:testcase_10_networking: passed
stage1:testcase_11_package_set: passed
stage1:testcase_12_passwd_group: passed
stage1:testcase_13_resize2fs: passed
stage1:testcase_14_host_details: passed
stage1:testcase_15_rhel_version: passed
stage1:testcase_16_selinux: passed
stage1:testcase_17_shells: passed
stage1:testcase_18_sshd: passed
stage1:testcase_19_rhn_system_id: passed
stage1:testcase_20_auditd: passed
stage1:testcase_21_disk_size_format: passed
stage1:testcase_22_gpg_keys: passed
stage1:testcase_23_syslog: passed
stage1:testcase_24_yum_plugin: passed
stage1:testcase_25_uname: passed
stage1:testcase_26_verify_rpms: passed
stage1:testcase_27_yum_repos: failed
-
  result: failed
  actual repos:
  {'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-releases-beta': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-client-config-server-6-beta': True}
  expected repos: {'rhui-REGION-rhel-server-supplementary': False,
  'rhui-REGION-rhel-server-rhscl': True,
  'rhui-REGION-rhel-server-source-rhscl': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-source-supplementary': False,
  'rhui-REGION-rhel-server-debug-supplementary': False,
  'rhui-REGION-rhel-server-debug-rhscl': False,
  'rhui-REGION-client-config-server-6-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-rhel-server-releases-source': False,
  'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhui-REGION-rhel-server-releases-beta':
  True, 'rhui-REGION-rhel-server-releases-optional-source': False,
  'rhui-REGION-client-config-server-6': True,
  'rhui-REGION-rhel-server-releases': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-optional': True}
stage1:testcase_30_rhn_certificates: failed
-
  command: rpm -ql rh-amazon-rhui-client rh-amazon-rhui-client-beta
  result: passed
  value: package rh-amazon-rhui-client is not installed
  /etc/init.d/choose_beta_repo  /etc/init.d/rh-cloud-firstboot
  /etc/pki/rhui/ca.crt  /etc/pki/rhui/cdn.redhat.com-chain.crt
  /etc/pki/rhui/content-rhel6-beta.key
  /etc/pki/rhui/product/content-rhel6-beta.crt
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  /etc/pki/rhui/rhui-client-config-server-6-beta.key
  /etc/yum.repos.d/redhat-rhui-beta.repo
  /etc/yum.repos.d/redhat-rhui-client-config-beta.repo
  /etc/yum.repos.d/rhui-load-balancers.conf
  /etc/yum/pluginconf.d/amazon-id.conf
  /etc/yum/pluginconf.d/rhui-lb.conf
  /usr/lib/yum-plugins/amazon-id.py
  /usr/lib/yum-plugins/amazon-id.pyc
  /usr/lib/yum-plugins/amazon-id.pyo  /usr/lib/yum-plugins/rhui-lb.py
  /usr/lib/yum-plugins/rhui-lb.pyc  /usr/lib/yum-plugins/rhui-lb.pyo
  /usr/sbin/choose_repo.py  /usr/sbin/rh-cloud-firstboot.py
-
  command: openssl x509 -in /etc/pki/rhui/ca.crt -noout -dates
  result: passed
  value: notBefore=Aug 23 19:46:02 2011 GMT  notAfter=Nov 30 19:46:02
  2017 GMT
-
  result: failed
  comment: (/etc/pki/rhui/ca.crt).notAfter=2017-11-30 19:46:02;
  expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in /etc/pki/rhui/cdn.redhat.com-chain.crt
  -noout -dates
  result: passed
  value: notBefore=Mar 18 11:24:54 2010 GMT  notAfter=Mar 13 11:24:54
  2030 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/cdn.redhat.com-chain.crt).notAfter=2030-03-13
  11:24:54; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/content-rhel6-beta.crt -noout -dates
  result: passed
  value: notBefore=Mar 29 18:34:17 2012 GMT  notAfter=Nov 30 18:34:17
  2020 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/product/content-rhel6-beta.crt).notAfter=2020-11-30
  18:34:17; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt -noout
  -dates
  result: passed
  value: notBefore=Mar 29 18:38:42 2012 GMT  notAfter=Nov 30 18:38:42
  2020 GMT
-
  result: passed
  comment: (/etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  ).notAfter=2020-11-30 18:38:42; expecting: 2020-11-10 00:00:00
stage1:testcase_31_subscription_management: passed
stage1:testcase_32_ephemeral: failed
-
  command: ls -la /sbin/mkfs.vfat 2> /dev/null | wc -l
  result: passed
  value: 1
-
  command: fdisk -l /dev/xvdj | grep '^Disk'
  result: failed
  actual: 1
-
  command: grep '/dev/xvdj ' /proc/mounts  | wc -l
  result: passed
  value: 0
-
  command: mkfs.vfat -I /dev/xvdj
  result: failed
  actual: 1
stage1:testcase_33_userdata: passed
stage1:testcase_34_cpu: passed
stage1:testcase_360_ebs: passed
stage1:testcase_39_root_is_locked: passed
stage1:testcase_41_rh_amazon_rhui_client: passed
stage1:testcase_42_ipv6: passed
stage1:testcase_50_yum_package_install: passed
stage1:testcase_55_yum_group_install: passed
stage1:testcase_60_yum_update: passed
stage1:testcase_61_yum_proxy: passed
stage1:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409129542.057:6): avc:
  denied  { setattr } for  pid=1055 comm="prelink" name="" dev=pipefs
  ino=11536 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129543.300:7): avc:
  denied  { setattr } for  pid=1083 comm="prelink" name="" dev=pipefs
  ino=11670 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129554.858:11): avc:
  denied  { setattr } for  pid=1117 comm="prelink" name="" dev=pipefs
  ino=11929 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129582.779:35): avc:
  denied  { setattr } for  pid=1228 comm="prelink" name="" dev=pipefs
  ino=12758 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129584.263:45): avc:
  denied  { read write } for  pid=1347 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129584.265:46): avc:
  denied  { read write } for  pid=1349 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129584.464:54): avc:
  denied  { setattr } for  pid=1370 comm="prelink" name="" dev=pipefs
  ino=13273 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129586.526:63): avc:
  denied  { setattr } for  pid=1408 comm="prelink" name="" dev=pipefs
  ino=13543 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-191-45-62 ~]#
  expectation:   START  END
stage1:testcase_99_reboot: passed
stage2:testcase_08_memory: passed
stage2:testcase_25_uname: passed
stage2:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409129542.057:6): avc:
  denied  { setattr } for  pid=1055 comm="prelink" name="" dev=pipefs
  ino=11536 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129543.300:7): avc:
  denied  { setattr } for  pid=1083 comm="prelink" name="" dev=pipefs
  ino=11670 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129554.858:11): avc:
  denied  { setattr } for  pid=1117 comm="prelink" name="" dev=pipefs
  ino=11929 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129582.779:35): avc:
  denied  { setattr } for  pid=1228 comm="prelink" name="" dev=pipefs
  ino=12758 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129584.263:45): avc:
  denied  { read write } for  pid=1347 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129584.265:46): avc:
  denied  { read write } for  pid=1349 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129584.464:54): avc:
  denied  { setattr } for  pid=1370 comm="prelink" name="" dev=pipefs
  ino=13273 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129586.526:63): avc:
  denied  { setattr } for  pid=1408 comm="prelink" name="" dev=pipefs
  ino=13543 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130061.777:560):
  avc:  denied  { setattr } for  pid=2700 comm="prelink" name=""
  dev=pipefs ino=38206
  scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:system_cronjob_t:s0-s0:c0.c1023
  tclass=fifo_file  /var/log/audit/audit.log:type=AVC
  msg=audit(1409130696.683:6): avc:  denied  { setattr } for  pid=1061
  comm="prelink" name="" dev=pipefs ino=11771
  scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130697.955:7): avc:
  denied  { setattr } for  pid=1088 comm="prelink" name="" dev=pipefs
  ino=11899 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130700.786:8): avc:
  denied  { setattr } for  pid=1157 comm="prelink" name="" dev=pipefs
  ino=12245 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130702.185:13): avc:
  denied  { read write } for  pid=1274 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130702.189:14): avc:
  denied  { read write } for  pid=1275 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130702.369:22): avc:
  denied  { setattr } for  pid=1295 comm="prelink" name="" dev=pipefs
  ino=12717 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130702.807:25): avc:
  denied  { setattr } for  pid=1309 comm="prelink" name="" dev=pipefs
  ino=12826 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-191-45-62 ~]#
  expectation:   START  END

Comment 3 Martin Minar 2014-08-28 13:12:40 UTC
# c1.xlarge: failed
stage1:testcase_01_bash_history: passed
stage1:testcase_02_selinux_context: passed
stage1:testcase_03_running_services: passed
stage1:testcase_04_cloud_firstboot: passed
stage1:testcase_05_grub: passed
stage1:testcase_06_inittab: passed
stage1:testcase_07_libc6_xen_conf: passed
stage1:testcase_08_memory: failed
-
  command: grep --color=none 'MemTotal:' /proc/meminfo
  match: .*\r\nMemTotal:\s*([0-9]+)
  result: passed
  value: ['6997860']
-
  command: [ 6997860 -gt 6997900 ]
  result: failed
  actual: 1
stage1:testcase_09_nameserver: passed
stage1:testcase_10_networking: passed
stage1:testcase_11_package_set: passed
stage1:testcase_12_passwd_group: passed
stage1:testcase_13_resize2fs: passed
stage1:testcase_14_host_details: passed
stage1:testcase_15_rhel_version: passed
stage1:testcase_16_selinux: passed
stage1:testcase_17_shells: passed
stage1:testcase_18_sshd: passed
stage1:testcase_19_rhn_system_id: passed
stage1:testcase_20_auditd: passed
stage1:testcase_21_disk_size_format: passed
stage1:testcase_22_gpg_keys: passed
stage1:testcase_23_syslog: passed
stage1:testcase_24_yum_plugin: passed
stage1:testcase_25_uname: passed
stage1:testcase_26_verify_rpms: passed
stage1:testcase_27_yum_repos: failed
-
  result: failed
  actual repos:
  {'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-releases-beta': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-client-config-server-6-beta': True}
  expected repos: {'rhui-REGION-rhel-server-supplementary': False,
  'rhui-REGION-rhel-server-rhscl': True,
  'rhui-REGION-rhel-server-source-rhscl': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-source-supplementary': False,
  'rhui-REGION-rhel-server-debug-supplementary': False,
  'rhui-REGION-rhel-server-debug-rhscl': False,
  'rhui-REGION-client-config-server-6-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-rhel-server-releases-source': False,
  'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhui-REGION-rhel-server-releases-beta':
  True, 'rhui-REGION-rhel-server-releases-optional-source': False,
  'rhui-REGION-client-config-server-6': True,
  'rhui-REGION-rhel-server-releases': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-optional': True}
stage1:testcase_30_rhn_certificates: failed
-
  command: rpm -ql rh-amazon-rhui-client rh-amazon-rhui-client-beta
  result: passed
  value: package rh-amazon-rhui-client is not installed
  /etc/init.d/choose_beta_repo  /etc/init.d/rh-cloud-firstboot
  /etc/pki/rhui/ca.crt  /etc/pki/rhui/cdn.redhat.com-chain.crt
  /etc/pki/rhui/content-rhel6-beta.key
  /etc/pki/rhui/product/content-rhel6-beta.crt
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  /etc/pki/rhui/rhui-client-config-server-6-beta.key
  /etc/yum.repos.d/redhat-rhui-beta.repo
  /etc/yum.repos.d/redhat-rhui-client-config-beta.repo
  /etc/yum.repos.d/rhui-load-balancers.conf
  /etc/yum/pluginconf.d/amazon-id.conf
  /etc/yum/pluginconf.d/rhui-lb.conf
  /usr/lib/yum-plugins/amazon-id.py
  /usr/lib/yum-plugins/amazon-id.pyc
  /usr/lib/yum-plugins/amazon-id.pyo  /usr/lib/yum-plugins/rhui-lb.py
  /usr/lib/yum-plugins/rhui-lb.pyc  /usr/lib/yum-plugins/rhui-lb.pyo
  /usr/sbin/choose_repo.py  /usr/sbin/rh-cloud-firstboot.py
-
  command: openssl x509 -in /etc/pki/rhui/ca.crt -noout -dates
  result: passed
  value: notBefore=Aug 23 19:46:02 2011 GMT  notAfter=Nov 30 19:46:02
  2017 GMT
-
  result: failed
  comment: (/etc/pki/rhui/ca.crt).notAfter=2017-11-30 19:46:02;
  expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in /etc/pki/rhui/cdn.redhat.com-chain.crt
  -noout -dates
  result: passed
  value: notBefore=Mar 18 11:24:54 2010 GMT  notAfter=Mar 13 11:24:54
  2030 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/cdn.redhat.com-chain.crt).notAfter=2030-03-13
  11:24:54; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/content-rhel6-beta.crt -noout -dates
  result: passed
  value: notBefore=Mar 29 18:34:17 2012 GMT  notAfter=Nov 30 18:34:17
  2020 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/product/content-rhel6-beta.crt).notAfter=2020-11-30
  18:34:17; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt -noout
  -dates
  result: passed
  value: notBefore=Mar 29 18:38:42 2012 GMT  notAfter=Nov 30 18:38:42
  2020 GMT
-
  result: passed
  comment: (/etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  ).notAfter=2020-11-30 18:38:42; expecting: 2020-11-10 00:00:00
stage1:testcase_31_subscription_management: passed
stage1:testcase_32_ephemeral: failed
-
  command: ls -la /sbin/mkfs.vfat 2> /dev/null | wc -l
  result: passed
  value: 1
-
  command: fdisk -l /dev/xvdj | grep '^Disk'
  result: failed
  actual: 1
-
  command: grep '/dev/xvdj ' /proc/mounts  | wc -l
  result: passed
  value: 0
-
  command: mkfs.vfat -I /dev/xvdj
  result: failed
  actual: 1
stage1:testcase_33_userdata: passed
stage1:testcase_34_cpu: passed
stage1:testcase_360_ebs: passed
stage1:testcase_39_root_is_locked: passed
stage1:testcase_41_rh_amazon_rhui_client: passed
stage1:testcase_42_ipv6: passed
stage1:testcase_50_yum_package_install: passed
stage1:testcase_55_yum_group_install: passed
stage1:testcase_60_yum_update: passed
stage1:testcase_61_yum_proxy: passed
stage1:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127178.430:6): avc:
  denied  { setattr } for  pid=1243 comm="prelink" name="" dev=pipefs
  ino=12466 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127179.806:7): avc:
  denied  { setattr } for  pid=1271 comm="prelink" name="" dev=pipefs
  ino=12600 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127190.430:11): avc:
  denied  { setattr } for  pid=1305 comm="prelink" name="" dev=pipefs
  ino=12860 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127214.953:35): avc:
  denied  { setattr } for  pid=1416 comm="prelink" name="" dev=pipefs
  ino=13689 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127216.529:36): avc:
  denied  { read write } for  pid=1533 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127216.530:37): avc:
  denied  { read write } for  pid=1534 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127216.702:38): avc:
  denied  { setattr } for  pid=1553 comm="prelink" name="" dev=pipefs
  ino=14134 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127216.992:39): avc:
  denied  { setattr } for  pid=1567 comm="prelink" name="" dev=pipefs
  ino=14233 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-233-13-2 ~]#
  expectation:   START  END
stage1:testcase_99_reboot: passed
stage2:testcase_08_memory: failed
-
  command: grep --color=none 'MemTotal:' /proc/meminfo
  match: .*\r\nMemTotal:\s*([0-9]+)
  result: passed
  value: ['6997860']
-
  command: [ 6997860 -gt 6997900 ]
  result: failed
  actual: 1
stage2:testcase_25_uname: passed
stage2:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127178.430:6): avc:
  denied  { setattr } for  pid=1243 comm="prelink" name="" dev=pipefs
  ino=12466 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127179.806:7): avc:
  denied  { setattr } for  pid=1271 comm="prelink" name="" dev=pipefs
  ino=12600 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127190.430:11): avc:
  denied  { setattr } for  pid=1305 comm="prelink" name="" dev=pipefs
  ino=12860 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127214.953:35): avc:
  denied  { setattr } for  pid=1416 comm="prelink" name="" dev=pipefs
  ino=13689 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127216.529:36): avc:
  denied  { read write } for  pid=1533 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127216.530:37): avc:
  denied  { read write } for  pid=1534 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127216.702:38): avc:
  denied  { setattr } for  pid=1553 comm="prelink" name="" dev=pipefs
  ino=14134 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127216.992:39): avc:
  denied  { setattr } for  pid=1567 comm="prelink" name="" dev=pipefs
  ino=14233 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128771.004:6): avc:
  denied  { setattr } for  pid=1248 comm="prelink" name="" dev=pipefs
  ino=12763 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128772.228:7): avc:
  denied  { setattr } for  pid=1275 comm="prelink" name="" dev=pipefs
  ino=12891 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128775.285:8): avc:
  denied  { setattr } for  pid=1344 comm="prelink" name="" dev=pipefs
  ino=13236 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128776.918:13): avc:
  denied  { read write } for  pid=1458 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128776.956:14): avc:
  denied  { read write } for  pid=1464 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128777.258:22): avc:
  denied  { setattr } for  pid=1482 comm="prelink" name="" dev=pipefs
  ino=13708 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128777.644:25): avc:
  denied  { setattr } for  pid=1496 comm="prelink" name="" dev=pipefs
  ino=13826 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-233-13-2 ~]#
  expectation:   START  END

Comment 4 Martin Minar 2014-08-28 13:12:42 UTC
# m1.small: failed
stage1:testcase_01_bash_history: passed
stage1:testcase_02_selinux_context: passed
stage1:testcase_03_running_services: passed
stage1:testcase_04_cloud_firstboot: passed
stage1:testcase_05_grub: passed
stage1:testcase_06_inittab: passed
stage1:testcase_07_libc6_xen_conf: passed
stage1:testcase_08_memory: passed
stage1:testcase_09_nameserver: passed
stage1:testcase_10_networking: passed
stage1:testcase_11_package_set: passed
stage1:testcase_12_passwd_group: passed
stage1:testcase_13_resize2fs: passed
stage1:testcase_14_host_details: passed
stage1:testcase_15_rhel_version: passed
stage1:testcase_16_selinux: passed
stage1:testcase_17_shells: passed
stage1:testcase_18_sshd: passed
stage1:testcase_19_rhn_system_id: passed
stage1:testcase_20_auditd: passed
stage1:testcase_21_disk_size_format: passed
stage1:testcase_22_gpg_keys: passed
stage1:testcase_23_syslog: passed
stage1:testcase_24_yum_plugin: passed
stage1:testcase_25_uname: passed
stage1:testcase_26_verify_rpms: passed
stage1:testcase_27_yum_repos: failed
-
  result: failed
  actual repos:
  {'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-releases-beta': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-client-config-server-6-beta': True}
  expected repos: {'rhui-REGION-rhel-server-supplementary': False,
  'rhui-REGION-rhel-server-rhscl': True,
  'rhui-REGION-rhel-server-source-rhscl': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-source-supplementary': False,
  'rhui-REGION-rhel-server-debug-supplementary': False,
  'rhui-REGION-rhel-server-debug-rhscl': False,
  'rhui-REGION-client-config-server-6-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-rhel-server-releases-source': False,
  'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhui-REGION-rhel-server-releases-beta':
  True, 'rhui-REGION-rhel-server-releases-optional-source': False,
  'rhui-REGION-client-config-server-6': True,
  'rhui-REGION-rhel-server-releases': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-optional': True}
stage1:testcase_30_rhn_certificates: failed
-
  command: rpm -ql rh-amazon-rhui-client rh-amazon-rhui-client-beta
  result: passed
  value: package rh-amazon-rhui-client is not installed
  /etc/init.d/choose_beta_repo  /etc/init.d/rh-cloud-firstboot
  /etc/pki/rhui/ca.crt  /etc/pki/rhui/cdn.redhat.com-chain.crt
  /etc/pki/rhui/content-rhel6-beta.key
  /etc/pki/rhui/product/content-rhel6-beta.crt
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  /etc/pki/rhui/rhui-client-config-server-6-beta.key
  /etc/yum.repos.d/redhat-rhui-beta.repo
  /etc/yum.repos.d/redhat-rhui-client-config-beta.repo
  /etc/yum.repos.d/rhui-load-balancers.conf
  /etc/yum/pluginconf.d/amazon-id.conf
  /etc/yum/pluginconf.d/rhui-lb.conf
  /usr/lib/yum-plugins/amazon-id.py
  /usr/lib/yum-plugins/amazon-id.pyc
  /usr/lib/yum-plugins/amazon-id.pyo  /usr/lib/yum-plugins/rhui-lb.py
  /usr/lib/yum-plugins/rhui-lb.pyc  /usr/lib/yum-plugins/rhui-lb.pyo
  /usr/sbin/choose_repo.py  /usr/sbin/rh-cloud-firstboot.py
-
  command: openssl x509 -in /etc/pki/rhui/ca.crt -noout -dates
  result: passed
  value: notBefore=Aug 23 19:46:02 2011 GMT  notAfter=Nov 30 19:46:02
  2017 GMT
-
  result: failed
  comment: (/etc/pki/rhui/ca.crt).notAfter=2017-11-30 19:46:02;
  expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in /etc/pki/rhui/cdn.redhat.com-chain.crt
  -noout -dates
  result: passed
  value: notBefore=Mar 18 11:24:54 2010 GMT  notAfter=Mar 13 11:24:54
  2030 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/cdn.redhat.com-chain.crt).notAfter=2030-03-13
  11:24:54; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/content-rhel6-beta.crt -noout -dates
  result: passed
  value: notBefore=Mar 29 18:34:17 2012 GMT  notAfter=Nov 30 18:34:17
  2020 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/product/content-rhel6-beta.crt).notAfter=2020-11-30
  18:34:17; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt -noout
  -dates
  result: passed
  value: notBefore=Mar 29 18:38:42 2012 GMT  notAfter=Nov 30 18:38:42
  2020 GMT
-
  result: passed
  comment: (/etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  ).notAfter=2020-11-30 18:38:42; expecting: 2020-11-10 00:00:00
stage1:testcase_31_subscription_management: failed
-
  command: yum --disablerepo='*' -v repolist
  result: passed
  expectation: Not loading "subscription-manager" plugin
-
  command: yum --enableplugin=subscription-manager --disablerepo='*'
  -v repolist
  result: passed
  expectation: Loading "subscription-manager" plugin
-
  command: subscription-manager list
  result: failed
  actual: subscription-manager list  Config time: 1.193  Yum Version:
  3.2.29  mirrorlist: https://rhui2-cds01.us-east-1.aws.ce.redhat.com/
  pulp/mirror/content/beta/rhel/rhui/server/6/6Server/x86_64/optional/
  source/SRPMS  mirrorlist: https://rhui2-cds01.us-east-1.aws.ce.redha
  t.com/pulp/mirror/content/beta/rhel/rhui/server/6/6Server/x86_64/os
  mirrorlist: https://rhui2-cds01.us-east-1.aws.ce.redhat.com/pulp/mir
  ror/content/beta/rhel/rhui/server/6/6Server/x86_64/source/SRPMS
  mirrorlist: https://rhui2-cds01.us-east-1.aws.ce.redhat.com/pulp/mir
  ror/content/beta/rhel/rhui/server/6/6Server/x86_64/optional/os
  mirrorlist: https://rhui2-cds01.us-east-1.aws.ce.redhat.com/pulp/mir
  ror/rhui-client-config/beta/rhel/server/6/x86_64/os  Setting up
  Package Sacks  repolist: 0  [root@ip-10-239-139-248 ~]#
  subscription-manager list  Unable to verify server's identity:
  [root@ip-10-239-139-248 ~]#
  expectation: Installed Product Status
stage1:testcase_32_ephemeral: failed
-
  command: ls -la /sbin/mkfs.vfat 2> /dev/null | wc -l
  result: passed
  value: 1
-
  command: fdisk -l /dev/xvdj | grep '^Disk'
  result: failed
  actual: 1
-
  command: grep '/dev/xvdj ' /proc/mounts  | wc -l
  result: passed
  value: 0
-
  command: mkfs.vfat -I /dev/xvdj
  result: failed
  actual: 1
stage1:testcase_33_userdata: passed
stage1:testcase_34_cpu: passed
stage1:testcase_360_ebs: passed
stage1:testcase_39_root_is_locked: passed
stage1:testcase_41_rh_amazon_rhui_client: passed
stage1:testcase_42_ipv6: passed
stage1:testcase_50_yum_package_install: passed
stage1:testcase_55_yum_group_install: passed
stage1:testcase_60_yum_update: passed
stage1:testcase_61_yum_proxy: passed
stage1:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127216.731:6): avc:
  denied  { setattr } for  pid=1029 comm="prelink" name="" dev=pipefs
  ino=11417 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127219.483:7): avc:
  denied  { setattr } for  pid=1058 comm="prelink" name="" dev=pipefs
  ino=11556 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127244.051:11): avc:
  denied  { setattr } for  pid=1093 comm="prelink" name="" dev=pipefs
  ino=11823 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127286.351:125):
  avc:  denied  { setattr } for  pid=1298 comm="prelink" name=""
  dev=pipefs ino=13232 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127293.597:126):
  avc:  denied  { read write } for  pid=1426 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262290
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127293.642:127):
  avc:  denied  { read write } for  pid=1428 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262288
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127294.305:128):
  avc:  denied  { setattr } for  pid=1439 comm="prelink" name=""
  dev=pipefs ino=13690
  scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127295.993:129):
  avc:  denied  { setattr } for  pid=1453 comm="prelink" name=""
  dev=pipefs ino=13800
  scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-239-139-248 ~]#
  expectation:   START  END
stage1:testcase_99_reboot: passed
stage2:testcase_08_memory: passed
stage2:testcase_25_uname: passed
stage2:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127216.731:6): avc:
  denied  { setattr } for  pid=1029 comm="prelink" name="" dev=pipefs
  ino=11417 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127219.483:7): avc:
  denied  { setattr } for  pid=1058 comm="prelink" name="" dev=pipefs
  ino=11556 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127244.051:11): avc:
  denied  { setattr } for  pid=1093 comm="prelink" name="" dev=pipefs
  ino=11823 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127286.351:125):
  avc:  denied  { setattr } for  pid=1298 comm="prelink" name=""
  dev=pipefs ino=13232 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127293.597:126):
  avc:  denied  { read write } for  pid=1426 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262290
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127293.642:127):
  avc:  denied  { read write } for  pid=1428 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262288
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127294.305:128):
  avc:  denied  { setattr } for  pid=1439 comm="prelink" name=""
  dev=pipefs ino=13690
  scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127295.993:129):
  avc:  denied  { setattr } for  pid=1453 comm="prelink" name=""
  dev=pipefs ino=13800
  scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129923.664:6): avc:
  denied  { setattr } for  pid=1035 comm="prelink" name="" dev=pipefs
  ino=11645 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129926.297:7): avc:
  denied  { setattr } for  pid=1063 comm="prelink" name="" dev=pipefs
  ino=11779 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129932.323:8): avc:
  denied  { setattr } for  pid=1133 comm="prelink" name="" dev=pipefs
  ino=12133 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129936.105:20): avc:
  denied  { read write } for  pid=1240 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262290
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129936.174:21): avc:
  denied  { read write } for  pid=1241 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262288
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129937.071:29): avc:
  denied  { setattr } for  pid=1272 comm="prelink" name="" dev=pipefs
  ino=12649 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129938.608:30): avc:
  denied  { setattr } for  pid=1304 comm="prelink" name="" dev=pipefs
  ino=12776 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-239-139-248 ~]#
  expectation:   START  END

Comment 5 Martin Minar 2014-08-28 13:12:44 UTC
# m1.xlarge: failed
stage1:testcase_01_bash_history: passed
stage1:testcase_02_selinux_context: passed
stage1:testcase_03_running_services: passed
stage1:testcase_04_cloud_firstboot: passed
stage1:testcase_05_grub: passed
stage1:testcase_06_inittab: passed
stage1:testcase_07_libc6_xen_conf: passed
stage1:testcase_08_memory: passed
stage1:testcase_09_nameserver: passed
stage1:testcase_10_networking: passed
stage1:testcase_11_package_set: passed
stage1:testcase_12_passwd_group: passed
stage1:testcase_13_resize2fs: passed
stage1:testcase_14_host_details: passed
stage1:testcase_15_rhel_version: passed
stage1:testcase_16_selinux: passed
stage1:testcase_17_shells: passed
stage1:testcase_18_sshd: passed
stage1:testcase_19_rhn_system_id: passed
stage1:testcase_20_auditd: passed
stage1:testcase_21_disk_size_format: passed
stage1:testcase_22_gpg_keys: passed
stage1:testcase_23_syslog: passed
stage1:testcase_24_yum_plugin: passed
stage1:testcase_25_uname: passed
stage1:testcase_26_verify_rpms: passed
stage1:testcase_27_yum_repos: failed
-
  result: failed
  actual repos:
  {'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-releases-beta': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-client-config-server-6-beta': True}
  expected repos: {'rhui-REGION-rhel-server-supplementary': False,
  'rhui-REGION-rhel-server-rhscl': True,
  'rhui-REGION-rhel-server-source-rhscl': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-source-supplementary': False,
  'rhui-REGION-rhel-server-debug-supplementary': False,
  'rhui-REGION-rhel-server-debug-rhscl': False,
  'rhui-REGION-client-config-server-6-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-rhel-server-releases-source': False,
  'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhui-REGION-rhel-server-releases-beta':
  True, 'rhui-REGION-rhel-server-releases-optional-source': False,
  'rhui-REGION-client-config-server-6': True,
  'rhui-REGION-rhel-server-releases': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-optional': True}
stage1:testcase_30_rhn_certificates: failed
-
  command: rpm -ql rh-amazon-rhui-client rh-amazon-rhui-client-beta
  result: passed
  value: package rh-amazon-rhui-client is not installed
  /etc/init.d/choose_beta_repo  /etc/init.d/rh-cloud-firstboot
  /etc/pki/rhui/ca.crt  /etc/pki/rhui/cdn.redhat.com-chain.crt
  /etc/pki/rhui/content-rhel6-beta.key
  /etc/pki/rhui/product/content-rhel6-beta.crt
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  /etc/pki/rhui/rhui-client-config-server-6-beta.key
  /etc/yum.repos.d/redhat-rhui-beta.repo
  /etc/yum.repos.d/redhat-rhui-client-config-beta.repo
  /etc/yum.repos.d/rhui-load-balancers.conf
  /etc/yum/pluginconf.d/amazon-id.conf
  /etc/yum/pluginconf.d/rhui-lb.conf
  /usr/lib/yum-plugins/amazon-id.py
  /usr/lib/yum-plugins/amazon-id.pyc
  /usr/lib/yum-plugins/amazon-id.pyo  /usr/lib/yum-plugins/rhui-lb.py
  /usr/lib/yum-plugins/rhui-lb.pyc  /usr/lib/yum-plugins/rhui-lb.pyo
  /usr/sbin/choose_repo.py  /usr/sbin/rh-cloud-firstboot.py
-
  command: openssl x509 -in /etc/pki/rhui/ca.crt -noout -dates
  result: passed
  value: notBefore=Aug 23 19:46:02 2011 GMT  notAfter=Nov 30 19:46:02
  2017 GMT
-
  result: failed
  comment: (/etc/pki/rhui/ca.crt).notAfter=2017-11-30 19:46:02;
  expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in /etc/pki/rhui/cdn.redhat.com-chain.crt
  -noout -dates
  result: passed
  value: notBefore=Mar 18 11:24:54 2010 GMT  notAfter=Mar 13 11:24:54
  2030 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/cdn.redhat.com-chain.crt).notAfter=2030-03-13
  11:24:54; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/content-rhel6-beta.crt -noout -dates
  result: passed
  value: notBefore=Mar 29 18:34:17 2012 GMT  notAfter=Nov 30 18:34:17
  2020 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/product/content-rhel6-beta.crt).notAfter=2020-11-30
  18:34:17; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt -noout
  -dates
  result: passed
  value: notBefore=Mar 29 18:38:42 2012 GMT  notAfter=Nov 30 18:38:42
  2020 GMT
-
  result: passed
  comment: (/etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  ).notAfter=2020-11-30 18:38:42; expecting: 2020-11-10 00:00:00
stage1:testcase_31_subscription_management: passed
stage1:testcase_32_ephemeral: failed
-
  command: ls -la /sbin/mkfs.vfat 2> /dev/null | wc -l
  result: passed
  value: 1
-
  command: fdisk -l /dev/xvdj | grep '^Disk'
  result: failed
  actual: 1
-
  command: grep '/dev/xvdj ' /proc/mounts  | wc -l
  result: passed
  value: 0
-
  command: mkfs.vfat -I /dev/xvdj
  result: failed
  actual: 1
stage1:testcase_33_userdata: passed
stage1:testcase_34_cpu: passed
stage1:testcase_360_ebs: passed
stage1:testcase_39_root_is_locked: passed
stage1:testcase_41_rh_amazon_rhui_client: passed
stage1:testcase_42_ipv6: passed
stage1:testcase_50_yum_package_install: passed
stage1:testcase_55_yum_group_install: passed
stage1:testcase_60_yum_update: passed
stage1:testcase_61_yum_proxy: passed
stage1:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409129547.442:6): avc:
  denied  { setattr } for  pid=1118 comm="prelink" name="" dev=pipefs
  ino=11858 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129548.782:7): avc:
  denied  { setattr } for  pid=1146 comm="prelink" name="" dev=pipefs
  ino=11992 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129559.753:11): avc:
  denied  { setattr } for  pid=1180 comm="prelink" name="" dev=pipefs
  ino=12252 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129584.628:35): avc:
  denied  { setattr } for  pid=1291 comm="prelink" name="" dev=pipefs
  ino=13081 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129586.202:36): avc:
  denied  { read write } for  pid=1409 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129586.202:37): avc:
  denied  { read write } for  pid=1408 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129586.391:38): avc:
  denied  { setattr } for  pid=1428 comm="prelink" name="" dev=pipefs
  ino=13526 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129586.704:39): avc:
  denied  { setattr } for  pid=1442 comm="prelink" name="" dev=pipefs
  ino=13625 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-45-142-77 ~]#
  expectation:   START  END
stage1:testcase_99_reboot: passed
stage2:testcase_08_memory: passed
stage2:testcase_25_uname: passed
stage2:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409129547.442:6): avc:
  denied  { setattr } for  pid=1118 comm="prelink" name="" dev=pipefs
  ino=11858 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129548.782:7): avc:
  denied  { setattr } for  pid=1146 comm="prelink" name="" dev=pipefs
  ino=11992 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129559.753:11): avc:
  denied  { setattr } for  pid=1180 comm="prelink" name="" dev=pipefs
  ino=12252 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129584.628:35): avc:
  denied  { setattr } for  pid=1291 comm="prelink" name="" dev=pipefs
  ino=13081 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129586.202:36): avc:
  denied  { read write } for  pid=1409 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129586.202:37): avc:
  denied  { read write } for  pid=1408 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129586.391:38): avc:
  denied  { setattr } for  pid=1428 comm="prelink" name="" dev=pipefs
  ino=13526 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129586.704:39): avc:
  denied  { setattr } for  pid=1442 comm="prelink" name="" dev=pipefs
  ino=13625 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130061.628:544):
  avc:  denied  { setattr } for  pid=2756 comm="prelink" name=""
  dev=pipefs ino=38462
  scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:system_cronjob_t:s0-s0:c0.c1023
  tclass=fifo_file  /var/log/audit/audit.log:type=AVC
  msg=audit(1409130735.131:6): avc:  denied  { setattr } for  pid=1127
  comm="prelink" name="" dev=pipefs ino=12104
  scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130736.446:7): avc:
  denied  { setattr } for  pid=1154 comm="prelink" name="" dev=pipefs
  ino=12232 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130739.716:8): avc:
  denied  { setattr } for  pid=1223 comm="prelink" name="" dev=pipefs
  ino=12577 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130741.305:11): avc:
  denied  { read write } for  pid=1337 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130741.307:12): avc:
  denied  { read write } for  pid=1339 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130741.511:15): avc:
  denied  { setattr } for  pid=1359 comm="prelink" name="" dev=pipefs
  ino=13018 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130741.815:16): avc:
  denied  { setattr } for  pid=1373 comm="prelink" name="" dev=pipefs
  ino=13115 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-45-142-77 ~]#
  expectation:   START  END

Comment 6 Martin Minar 2014-08-28 13:12:46 UTC
# m2.xlarge: failed
stage1:testcase_01_bash_history: passed
stage1:testcase_02_selinux_context: passed
stage1:testcase_03_running_services: passed
stage1:testcase_04_cloud_firstboot: passed
stage1:testcase_05_grub: passed
stage1:testcase_06_inittab: passed
stage1:testcase_07_libc6_xen_conf: passed
stage1:testcase_08_memory: passed
stage1:testcase_09_nameserver: passed
stage1:testcase_10_networking: passed
stage1:testcase_11_package_set: passed
stage1:testcase_12_passwd_group: passed
stage1:testcase_13_resize2fs: passed
stage1:testcase_14_host_details: passed
stage1:testcase_15_rhel_version: passed
stage1:testcase_16_selinux: passed
stage1:testcase_17_shells: passed
stage1:testcase_18_sshd: passed
stage1:testcase_19_rhn_system_id: passed
stage1:testcase_20_auditd: passed
stage1:testcase_21_disk_size_format: passed
stage1:testcase_22_gpg_keys: passed
stage1:testcase_23_syslog: passed
stage1:testcase_24_yum_plugin: passed
stage1:testcase_25_uname: passed
stage1:testcase_26_verify_rpms: passed
stage1:testcase_27_yum_repos: failed
-
  result: failed
  actual repos:
  {'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-releases-beta': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-client-config-server-6-beta': True}
  expected repos: {'rhui-REGION-rhel-server-supplementary': False,
  'rhui-REGION-rhel-server-rhscl': True,
  'rhui-REGION-rhel-server-source-rhscl': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-source-supplementary': False,
  'rhui-REGION-rhel-server-debug-supplementary': False,
  'rhui-REGION-rhel-server-debug-rhscl': False,
  'rhui-REGION-client-config-server-6-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-rhel-server-releases-source': False,
  'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhui-REGION-rhel-server-releases-beta':
  True, 'rhui-REGION-rhel-server-releases-optional-source': False,
  'rhui-REGION-client-config-server-6': True,
  'rhui-REGION-rhel-server-releases': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-optional': True}
stage1:testcase_30_rhn_certificates: failed
-
  command: rpm -ql rh-amazon-rhui-client rh-amazon-rhui-client-beta
  result: passed
  value: package rh-amazon-rhui-client is not installed
  /etc/init.d/choose_beta_repo  /etc/init.d/rh-cloud-firstboot
  /etc/pki/rhui/ca.crt  /etc/pki/rhui/cdn.redhat.com-chain.crt
  /etc/pki/rhui/content-rhel6-beta.key
  /etc/pki/rhui/product/content-rhel6-beta.crt
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  /etc/pki/rhui/rhui-client-config-server-6-beta.key
  /etc/yum.repos.d/redhat-rhui-beta.repo
  /etc/yum.repos.d/redhat-rhui-client-config-beta.repo
  /etc/yum.repos.d/rhui-load-balancers.conf
  /etc/yum/pluginconf.d/amazon-id.conf
  /etc/yum/pluginconf.d/rhui-lb.conf
  /usr/lib/yum-plugins/amazon-id.py
  /usr/lib/yum-plugins/amazon-id.pyc
  /usr/lib/yum-plugins/amazon-id.pyo  /usr/lib/yum-plugins/rhui-lb.py
  /usr/lib/yum-plugins/rhui-lb.pyc  /usr/lib/yum-plugins/rhui-lb.pyo
  /usr/sbin/choose_repo.py  /usr/sbin/rh-cloud-firstboot.py
-
  command: openssl x509 -in /etc/pki/rhui/ca.crt -noout -dates
  result: passed
  value: notBefore=Aug 23 19:46:02 2011 GMT  notAfter=Nov 30 19:46:02
  2017 GMT
-
  result: failed
  comment: (/etc/pki/rhui/ca.crt).notAfter=2017-11-30 19:46:02;
  expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in /etc/pki/rhui/cdn.redhat.com-chain.crt
  -noout -dates
  result: passed
  value: notBefore=Mar 18 11:24:54 2010 GMT  notAfter=Mar 13 11:24:54
  2030 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/cdn.redhat.com-chain.crt).notAfter=2030-03-13
  11:24:54; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/content-rhel6-beta.crt -noout -dates
  result: passed
  value: notBefore=Mar 29 18:34:17 2012 GMT  notAfter=Nov 30 18:34:17
  2020 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/product/content-rhel6-beta.crt).notAfter=2020-11-30
  18:34:17; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt -noout
  -dates
  result: passed
  value: notBefore=Mar 29 18:38:42 2012 GMT  notAfter=Nov 30 18:38:42
  2020 GMT
-
  result: passed
  comment: (/etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  ).notAfter=2020-11-30 18:38:42; expecting: 2020-11-10 00:00:00
stage1:testcase_31_subscription_management: passed
stage1:testcase_32_ephemeral: failed
-
  command: ls -la /sbin/mkfs.vfat 2> /dev/null | wc -l
  result: passed
  value: 1
-
  command: fdisk -l /dev/xvdj | grep '^Disk'
  result: failed
  actual: 1
-
  command: grep '/dev/xvdj ' /proc/mounts  | wc -l
  result: passed
  value: 0
-
  command: mkfs.vfat -I /dev/xvdj
  result: failed
  actual: 1
stage1:testcase_33_userdata: passed
stage1:testcase_34_cpu: passed
stage1:testcase_360_ebs: passed
stage1:testcase_39_root_is_locked: passed
stage1:testcase_41_rh_amazon_rhui_client: passed
stage1:testcase_42_ipv6: passed
stage1:testcase_50_yum_package_install: passed
stage1:testcase_55_yum_group_install: passed
stage1:testcase_60_yum_update: passed
stage1:testcase_61_yum_proxy: passed
stage1:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: [root@ip-10-158-45-107 ~]# echo START; grep
  'avc:[[:space:]]*denied' /var/log/messages /var/log/audit/audit.log
  | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409129542.257:6): avc:
  denied  { setattr } for  pid=1058 comm="prelink" name="" dev=pipefs
  ino=11546 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129543.263:7): avc:
  denied  { setattr } for  pid=1086 comm="prelink" name="" dev=pipefs
  ino=11680 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129564.962:11): avc:
  denied  { setattr } for  pid=1120 comm="prelink" name="" dev=pipefs
  ino=11939 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129589.663:35): avc:
  denied  { setattr } for  pid=1231 comm="prelink" name="" dev=pipefs
  ino=12768 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129590.906:36): avc:
  denied  { read write } for  pid=1349 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129590.917:37): avc:
  denied  { read write } for  pid=1350 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129591.056:38): avc:
  denied  { setattr } for  pid=1368 comm="prelink" name="" dev=pipefs
  ino=13213 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129591.292:39): avc:
  denied  { setattr } for  pid=1382 comm="prelink" name="" dev=pipefs
  ino=13312 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-158-45-107 ~]#
  expectation:   START  END
stage1:testcase_99_reboot: passed
stage2:testcase_08_memory: passed
stage2:testcase_25_uname: passed
stage2:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409129542.257:6): avc:
  denied  { setattr } for  pid=1058 comm="prelink" name="" dev=pipefs
  ino=11546 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129543.263:7): avc:
  denied  { setattr } for  pid=1086 comm="prelink" name="" dev=pipefs
  ino=11680 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129564.962:11): avc:
  denied  { setattr } for  pid=1120 comm="prelink" name="" dev=pipefs
  ino=11939 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129589.663:35): avc:
  denied  { setattr } for  pid=1231 comm="prelink" name="" dev=pipefs
  ino=12768 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129590.906:36): avc:
  denied  { read write } for  pid=1349 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129590.917:37): avc:
  denied  { read write } for  pid=1350 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129591.056:38): avc:
  denied  { setattr } for  pid=1368 comm="prelink" name="" dev=pipefs
  ino=13213 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129591.292:39): avc:
  denied  { setattr } for  pid=1382 comm="prelink" name="" dev=pipefs
  ino=13312 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130061.931:525):
  avc:  denied  { setattr } for  pid=2649 comm="prelink" name=""
  dev=pipefs ino=37933
  scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:system_cronjob_t:s0-s0:c0.c1023
  tclass=fifo_file  /var/log/audit/audit.log:type=AVC
  msg=audit(1409130765.217:6): avc:  denied  { setattr } for  pid=1062
  comm="prelink" name="" dev=pipefs ino=11763
  scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130766.189:7): avc:
  denied  { setattr } for  pid=1089 comm="prelink" name="" dev=pipefs
  ino=11891 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130768.602:8): avc:
  denied  { setattr } for  pid=1158 comm="prelink" name="" dev=pipefs
  ino=12236 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130769.833:9): avc:
  denied  { read write } for  pid=1272 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130769.855:10): avc:
  denied  { read write } for  pid=1277 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130770.054:11): avc:
  denied  { setattr } for  pid=1291 comm="prelink" name="" dev=pipefs
  ino=12647 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130770.253:12): avc:
  denied  { setattr } for  pid=1305 comm="prelink" name="" dev=pipefs
  ino=12740 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-158-45-107 ~]#
  expectation:   START  END

Comment 7 Martin Minar 2014-08-28 13:12:48 UTC
# t1.micro: failed
stage1:testcase_01_bash_history: passed
stage1:testcase_02_selinux_context: passed
stage1:testcase_03_running_services: passed
stage1:testcase_04_cloud_firstboot: passed
stage1:testcase_05_grub: passed
stage1:testcase_06_inittab: passed
stage1:testcase_07_libc6_xen_conf: passed
stage1:testcase_08_memory: passed
stage1:testcase_09_nameserver: passed
stage1:testcase_10_networking: passed
stage1:testcase_11_package_set: passed
stage1:testcase_12_passwd_group: passed
stage1:testcase_13_resize2fs: failed
-
  command: df -h | grep 15G
  result: failed
  actual: 1
stage1:testcase_14_host_details: passed
stage1:testcase_15_rhel_version: passed
stage1:testcase_16_selinux: passed
stage1:testcase_17_shells: passed
stage1:testcase_18_sshd: passed
stage1:testcase_19_rhn_system_id: passed
stage1:testcase_20_auditd: passed
stage1:testcase_21_disk_size_format: passed
stage1:testcase_22_gpg_keys: passed
stage1:testcase_23_syslog: passed
stage1:testcase_24_yum_plugin: passed
stage1:testcase_25_uname: passed
stage1:testcase_26_verify_rpms: passed
stage1:testcase_27_yum_repos: failed
-
  result: failed
  actual repos:
  {'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-releases-beta': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-client-config-server-6-beta': True}
  expected repos: {'rhui-REGION-rhel-server-supplementary': False,
  'rhui-REGION-rhel-server-rhscl': True,
  'rhui-REGION-rhel-server-source-rhscl': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-source-supplementary': False,
  'rhui-REGION-rhel-server-debug-supplementary': False,
  'rhui-REGION-rhel-server-debug-rhscl': False,
  'rhui-REGION-client-config-server-6-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-rhel-server-releases-source': False,
  'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhui-REGION-rhel-server-releases-beta':
  True, 'rhui-REGION-rhel-server-releases-optional-source': False,
  'rhui-REGION-client-config-server-6': True,
  'rhui-REGION-rhel-server-releases': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-optional': True}
stage1:testcase_30_rhn_certificates: failed
-
  command: rpm -ql rh-amazon-rhui-client rh-amazon-rhui-client-beta
  result: passed
  value: package rh-amazon-rhui-client is not installed
  /etc/init.d/choose_beta_repo  /etc/init.d/rh-cloud-firstboot
  /etc/pki/rhui/ca.crt  /etc/pki/rhui/cdn.redhat.com-chain.crt
  /etc/pki/rhui/content-rhel6-beta.key
  /etc/pki/rhui/product/content-rhel6-beta.crt
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  /etc/pki/rhui/rhui-client-config-server-6-beta.key
  /etc/yum.repos.d/redhat-rhui-beta.repo
  /etc/yum.repos.d/redhat-rhui-client-config-beta.repo
  /etc/yum.repos.d/rhui-load-balancers.conf
  /etc/yum/pluginconf.d/amazon-id.conf
  /etc/yum/pluginconf.d/rhui-lb.conf
  /usr/lib/yum-plugins/amazon-id.py
  /usr/lib/yum-plugins/amazon-id.pyc
  /usr/lib/yum-plugins/amazon-id.pyo  /usr/lib/yum-plugins/rhui-lb.py
  /usr/lib/yum-plugins/rhui-lb.pyc  /usr/lib/yum-plugins/rhui-lb.pyo
  /usr/sbin/choose_repo.py  /usr/sbin/rh-cloud-firstboot.py
-
  command: openssl x509 -in /etc/pki/rhui/ca.crt -noout -dates
  result: passed
  value: notBefore=Aug 23 19:46:02 2011 GMT  notAfter=Nov 30 19:46:02
  2017 GMT
-
  result: failed
  comment: (/etc/pki/rhui/ca.crt).notAfter=2017-11-30 19:46:02;
  expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in /etc/pki/rhui/cdn.redhat.com-chain.crt
  -noout -dates
  result: passed
  value: notBefore=Mar 18 11:24:54 2010 GMT  notAfter=Mar 13 11:24:54
  2030 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/cdn.redhat.com-chain.crt).notAfter=2030-03-13
  11:24:54; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/content-rhel6-beta.crt -noout -dates
  result: passed
  value: notBefore=Mar 29 18:34:17 2012 GMT  notAfter=Nov 30 18:34:17
  2020 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/product/content-rhel6-beta.crt).notAfter=2020-11-30
  18:34:17; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt -noout
  -dates
  result: passed
  value: notBefore=Mar 29 18:38:42 2012 GMT  notAfter=Nov 30 18:38:42
  2020 GMT
-
  result: passed
  comment: (/etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  ).notAfter=2020-11-30 18:38:42; expecting: 2020-11-10 00:00:00
stage1:testcase_31_subscription_management: passed
stage1:testcase_32_ephemeral: passed
stage1:testcase_33_userdata: passed
stage1:testcase_34_cpu: passed
stage1:testcase_360_ebs: passed
stage1:testcase_39_root_is_locked: passed
stage1:testcase_41_rh_amazon_rhui_client: passed
stage1:testcase_42_ipv6: passed
stage1:testcase_50_yum_package_install: passed
stage1:testcase_55_yum_group_install: passed
stage1:testcase_60_yum_update: passed
stage1:testcase_61_yum_proxy: passed
stage1:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127184.520:6): avc:
  denied  { setattr } for  pid=1006 comm="prelink" name="" dev=pipefs
  ino=11264 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127185.697:7): avc:
  denied  { setattr } for  pid=1033 comm="prelink" name="" dev=pipefs
  ino=11392 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127195.553:11): avc:
  denied  { setattr } for  pid=1066 comm="prelink" name="" dev=pipefs
  ino=11643 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127221.964:35): avc:
  denied  { setattr } for  pid=1173 comm="prelink" name="" dev=pipefs
  ino=12218 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127223.607:36): avc:
  denied  { read write } for  pid=1288 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262355
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127223.625:37): avc:
  denied  { read write } for  pid=1290 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262353
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127223.858:38): avc:
  denied  { setattr } for  pid=1310 comm="prelink" name="" dev=pipefs
  ino=12663 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127224.306:39): avc:
  denied  { setattr } for  pid=1324 comm="prelink" name="" dev=pipefs
  ino=12755 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-189-151-11 ~]#
  expectation:   START  END
stage1:testcase_99_reboot: passed
stage2:testcase_08_memory: passed
stage2:testcase_25_uname: passed
stage2:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127184.520:6): avc:
  denied  { setattr } for  pid=1006 comm="prelink" name="" dev=pipefs
  ino=11264 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127185.697:7): avc:
  denied  { setattr } for  pid=1033 comm="prelink" name="" dev=pipefs
  ino=11392 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127195.553:11): avc:
  denied  { setattr } for  pid=1066 comm="prelink" name="" dev=pipefs
  ino=11643 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127221.964:35): avc:
  denied  { setattr } for  pid=1173 comm="prelink" name="" dev=pipefs
  ino=12218 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127223.607:36): avc:
  denied  { read write } for  pid=1288 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262355
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127223.625:37): avc:
  denied  { read write } for  pid=1290 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262353
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127223.858:38): avc:
  denied  { setattr } for  pid=1310 comm="prelink" name="" dev=pipefs
  ino=12663 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127224.306:39): avc:
  denied  { setattr } for  pid=1324 comm="prelink" name="" dev=pipefs
  ino=12755 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129012.605:6): avc:
  denied  { setattr } for  pid=1003 comm="prelink" name="" dev=pipefs
  ino=11248 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129013.755:7): avc:
  denied  { setattr } for  pid=1030 comm="prelink" name="" dev=pipefs
  ino=11376 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129016.485:8): avc:
  denied  { setattr } for  pid=1099 comm="prelink" name="" dev=pipefs
  ino=11720 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129017.981:9): avc:
  denied  { read write } for  pid=1215 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262355
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129017.999:10): avc:
  denied  { read write } for  pid=1217 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262353
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129018.245:15): avc:
  denied  { setattr } for  pid=1235 comm="prelink" name="" dev=pipefs
  ino=12158 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129018.787:16): avc:
  denied  { setattr } for  pid=1249 comm="prelink" name="" dev=pipefs
  ino=12255 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-189-151-11 ~]#
  expectation:   START  END

Comment 8 Martin Minar 2014-08-28 13:12:49 UTC
# m2.4xlarge: failed
stage1:testcase_01_bash_history: passed
stage1:testcase_02_selinux_context: passed
stage1:testcase_03_running_services: passed
stage1:testcase_04_cloud_firstboot: passed
stage1:testcase_05_grub: passed
stage1:testcase_06_inittab: passed
stage1:testcase_07_libc6_xen_conf: passed
stage1:testcase_08_memory: passed
stage1:testcase_09_nameserver: passed
stage1:testcase_10_networking: passed
stage1:testcase_11_package_set: passed
stage1:testcase_12_passwd_group: passed
stage1:testcase_13_resize2fs: passed
stage1:testcase_14_host_details: passed
stage1:testcase_15_rhel_version: passed
stage1:testcase_16_selinux: passed
stage1:testcase_17_shells: passed
stage1:testcase_18_sshd: passed
stage1:testcase_19_rhn_system_id: passed
stage1:testcase_20_auditd: passed
stage1:testcase_21_disk_size_format: passed
stage1:testcase_22_gpg_keys: passed
stage1:testcase_23_syslog: passed
stage1:testcase_24_yum_plugin: passed
stage1:testcase_25_uname: passed
stage1:testcase_26_verify_rpms: passed
stage1:testcase_27_yum_repos: failed
-
  result: failed
  actual repos:
  {'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-releases-beta': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-client-config-server-6-beta': True}
  expected repos: {'rhui-REGION-rhel-server-supplementary': False,
  'rhui-REGION-rhel-server-rhscl': True,
  'rhui-REGION-rhel-server-source-rhscl': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-source-supplementary': False,
  'rhui-REGION-rhel-server-debug-supplementary': False,
  'rhui-REGION-rhel-server-debug-rhscl': False,
  'rhui-REGION-client-config-server-6-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-rhel-server-releases-source': False,
  'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhui-REGION-rhel-server-releases-beta':
  True, 'rhui-REGION-rhel-server-releases-optional-source': False,
  'rhui-REGION-client-config-server-6': True,
  'rhui-REGION-rhel-server-releases': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-optional': True}
stage1:testcase_30_rhn_certificates: failed
-
  command: rpm -ql rh-amazon-rhui-client rh-amazon-rhui-client-beta
  result: passed
  value: package rh-amazon-rhui-client is not installed
  /etc/init.d/choose_beta_repo  /etc/init.d/rh-cloud-firstboot
  /etc/pki/rhui/ca.crt  /etc/pki/rhui/cdn.redhat.com-chain.crt
  /etc/pki/rhui/content-rhel6-beta.key
  /etc/pki/rhui/product/content-rhel6-beta.crt
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  /etc/pki/rhui/rhui-client-config-server-6-beta.key
  /etc/yum.repos.d/redhat-rhui-beta.repo
  /etc/yum.repos.d/redhat-rhui-client-config-beta.repo
  /etc/yum.repos.d/rhui-load-balancers.conf
  /etc/yum/pluginconf.d/amazon-id.conf
  /etc/yum/pluginconf.d/rhui-lb.conf
  /usr/lib/yum-plugins/amazon-id.py
  /usr/lib/yum-plugins/amazon-id.pyc
  /usr/lib/yum-plugins/amazon-id.pyo  /usr/lib/yum-plugins/rhui-lb.py
  /usr/lib/yum-plugins/rhui-lb.pyc  /usr/lib/yum-plugins/rhui-lb.pyo
  /usr/sbin/choose_repo.py  /usr/sbin/rh-cloud-firstboot.py
-
  command: openssl x509 -in /etc/pki/rhui/ca.crt -noout -dates
  result: passed
  value: notBefore=Aug 23 19:46:02 2011 GMT  notAfter=Nov 30 19:46:02
  2017 GMT
-
  result: failed
  comment: (/etc/pki/rhui/ca.crt).notAfter=2017-11-30 19:46:02;
  expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in /etc/pki/rhui/cdn.redhat.com-chain.crt
  -noout -dates
  result: passed
  value: notBefore=Mar 18 11:24:54 2010 GMT  notAfter=Mar 13 11:24:54
  2030 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/cdn.redhat.com-chain.crt).notAfter=2030-03-13
  11:24:54; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/content-rhel6-beta.crt -noout -dates
  result: passed
  value: notBefore=Mar 29 18:34:17 2012 GMT  notAfter=Nov 30 18:34:17
  2020 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/product/content-rhel6-beta.crt).notAfter=2020-11-30
  18:34:17; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt -noout
  -dates
  result: passed
  value: notBefore=Mar 29 18:38:42 2012 GMT  notAfter=Nov 30 18:38:42
  2020 GMT
-
  result: passed
  comment: (/etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  ).notAfter=2020-11-30 18:38:42; expecting: 2020-11-10 00:00:00
stage1:testcase_31_subscription_management: passed
stage1:testcase_32_ephemeral: failed
-
  command: ls -la /sbin/mkfs.vfat 2> /dev/null | wc -l
  result: passed
  value: 1
-
  command: fdisk -l /dev/xvdj | grep '^Disk'
  result: failed
  actual: 1
-
  command: grep '/dev/xvdj ' /proc/mounts  | wc -l
  result: passed
  value: 0
-
  command: mkfs.vfat -I /dev/xvdj
  result: failed
  actual: 1
stage1:testcase_33_userdata: passed
stage1:testcase_34_cpu: passed
stage1:testcase_360_ebs: passed
stage1:testcase_39_root_is_locked: passed
stage1:testcase_41_rh_amazon_rhui_client: passed
stage1:testcase_42_ipv6: passed
stage1:testcase_50_yum_package_install: passed
stage1:testcase_55_yum_group_install: passed
stage1:testcase_60_yum_update: passed
stage1:testcase_61_yum_proxy: passed
stage1:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409129543.959:6): avc:
  denied  { setattr } for  pid=1246 comm="prelink" name="" dev=pipefs
  ino=12487 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129544.975:7): avc:
  denied  { setattr } for  pid=1274 comm="prelink" name="" dev=pipefs
  ino=12621 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129556.677:11): avc:
  denied  { setattr } for  pid=1308 comm="prelink" name="" dev=pipefs
  ino=12880 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129580.804:32): avc:
  denied  { setattr } for  pid=1419 comm="prelink" name="" dev=pipefs
  ino=13702 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129581.959:36): avc:
  denied  { read write } for  pid=1537 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129581.959:37): avc:
  denied  { read write } for  pid=1538 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129582.117:38): avc:
  denied  { setattr } for  pid=1556 comm="prelink" name="" dev=pipefs
  ino=14154 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129582.322:39): avc:
  denied  { setattr } for  pid=1570 comm="prelink" name="" dev=pipefs
  ino=14253 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-66-190-229 ~]#
  expectation:   START  END
stage1:testcase_99_reboot: passed
stage2:testcase_08_memory: passed
stage2:testcase_25_uname: passed
stage2:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409129543.959:6): avc:
  denied  { setattr } for  pid=1246 comm="prelink" name="" dev=pipefs
  ino=12487 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129544.975:7): avc:
  denied  { setattr } for  pid=1274 comm="prelink" name="" dev=pipefs
  ino=12621 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129556.677:11): avc:
  denied  { setattr } for  pid=1308 comm="prelink" name="" dev=pipefs
  ino=12880 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129580.804:32): avc:
  denied  { setattr } for  pid=1419 comm="prelink" name="" dev=pipefs
  ino=13702 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129581.959:36): avc:
  denied  { read write } for  pid=1537 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129581.959:37): avc:
  denied  { read write } for  pid=1538 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129582.117:38): avc:
  denied  { setattr } for  pid=1556 comm="prelink" name="" dev=pipefs
  ino=14154 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129582.322:39): avc:
  denied  { setattr } for  pid=1570 comm="prelink" name="" dev=pipefs
  ino=14253 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130061.558:544):
  avc:  denied  { setattr } for  pid=2886 comm="prelink" name=""
  dev=pipefs ino=39104
  scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:system_cronjob_t:s0-s0:c0.c1023
  tclass=fifo_file  /var/log/audit/audit.log:type=AVC
  msg=audit(1409130720.524:6): avc:  denied  { setattr } for  pid=1244
  comm="prelink" name="" dev=pipefs ino=12729
  scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130721.482:7): avc:
  denied  { setattr } for  pid=1271 comm="prelink" name="" dev=pipefs
  ino=12857 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130723.873:8): avc:
  denied  { setattr } for  pid=1340 comm="prelink" name="" dev=pipefs
  ino=13202 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130725.146:13): avc:
  denied  { read write } for  pid=1448 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130725.148:14): avc:
  denied  { read write } for  pid=1449 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130725.353:15): avc:
  denied  { setattr } for  pid=1476 comm="prelink" name="" dev=pipefs
  ino=13643 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130725.545:16): avc:
  denied  { setattr } for  pid=1490 comm="prelink" name="" dev=pipefs
  ino=13746 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-66-190-229 ~]#
  expectation:   START  END

Comment 9 Martin Minar 2014-08-28 13:12:51 UTC
# m2.2xlarge: failed
stage1:testcase_01_bash_history: passed
stage1:testcase_02_selinux_context: passed
stage1:testcase_03_running_services: passed
stage1:testcase_04_cloud_firstboot: passed
stage1:testcase_05_grub: passed
stage1:testcase_06_inittab: passed
stage1:testcase_07_libc6_xen_conf: passed
stage1:testcase_08_memory: passed
stage1:testcase_09_nameserver: passed
stage1:testcase_10_networking: passed
stage1:testcase_11_package_set: passed
stage1:testcase_12_passwd_group: passed
stage1:testcase_13_resize2fs: passed
stage1:testcase_14_host_details: passed
stage1:testcase_15_rhel_version: passed
stage1:testcase_16_selinux: passed
stage1:testcase_17_shells: passed
stage1:testcase_18_sshd: passed
stage1:testcase_19_rhn_system_id: passed
stage1:testcase_20_auditd: passed
stage1:testcase_21_disk_size_format: passed
stage1:testcase_22_gpg_keys: passed
stage1:testcase_23_syslog: passed
stage1:testcase_24_yum_plugin: passed
stage1:testcase_25_uname: passed
stage1:testcase_26_verify_rpms: passed
stage1:testcase_27_yum_repos: failed
-
  result: failed
  actual repos:
  {'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-releases-beta': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-client-config-server-6-beta': True}
  expected repos: {'rhui-REGION-rhel-server-supplementary': False,
  'rhui-REGION-rhel-server-rhscl': True,
  'rhui-REGION-rhel-server-source-rhscl': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-source-supplementary': False,
  'rhui-REGION-rhel-server-debug-supplementary': False,
  'rhui-REGION-rhel-server-debug-rhscl': False,
  'rhui-REGION-client-config-server-6-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-rhel-server-releases-source': False,
  'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhui-REGION-rhel-server-releases-beta':
  True, 'rhui-REGION-rhel-server-releases-optional-source': False,
  'rhui-REGION-client-config-server-6': True,
  'rhui-REGION-rhel-server-releases': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-optional': True}
stage1:testcase_30_rhn_certificates: failed
-
  command: rpm -ql rh-amazon-rhui-client rh-amazon-rhui-client-beta
  result: passed
  value: package rh-amazon-rhui-client is not installed
  /etc/init.d/choose_beta_repo  /etc/init.d/rh-cloud-firstboot
  /etc/pki/rhui/ca.crt  /etc/pki/rhui/cdn.redhat.com-chain.crt
  /etc/pki/rhui/content-rhel6-beta.key
  /etc/pki/rhui/product/content-rhel6-beta.crt
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  /etc/pki/rhui/rhui-client-config-server-6-beta.key
  /etc/yum.repos.d/redhat-rhui-beta.repo
  /etc/yum.repos.d/redhat-rhui-client-config-beta.repo
  /etc/yum.repos.d/rhui-load-balancers.conf
  /etc/yum/pluginconf.d/amazon-id.conf
  /etc/yum/pluginconf.d/rhui-lb.conf
  /usr/lib/yum-plugins/amazon-id.py
  /usr/lib/yum-plugins/amazon-id.pyc
  /usr/lib/yum-plugins/amazon-id.pyo  /usr/lib/yum-plugins/rhui-lb.py
  /usr/lib/yum-plugins/rhui-lb.pyc  /usr/lib/yum-plugins/rhui-lb.pyo
  /usr/sbin/choose_repo.py  /usr/sbin/rh-cloud-firstboot.py
-
  command: openssl x509 -in /etc/pki/rhui/ca.crt -noout -dates
  result: passed
  value: notBefore=Aug 23 19:46:02 2011 GMT  notAfter=Nov 30 19:46:02
  2017 GMT
-
  result: failed
  comment: (/etc/pki/rhui/ca.crt).notAfter=2017-11-30 19:46:02;
  expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in /etc/pki/rhui/cdn.redhat.com-chain.crt
  -noout -dates
  result: passed
  value: notBefore=Mar 18 11:24:54 2010 GMT  notAfter=Mar 13 11:24:54
  2030 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/cdn.redhat.com-chain.crt).notAfter=2030-03-13
  11:24:54; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/content-rhel6-beta.crt -noout -dates
  result: passed
  value: notBefore=Mar 29 18:34:17 2012 GMT  notAfter=Nov 30 18:34:17
  2020 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/product/content-rhel6-beta.crt).notAfter=2020-11-30
  18:34:17; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt -noout
  -dates
  result: passed
  value: notBefore=Mar 29 18:38:42 2012 GMT  notAfter=Nov 30 18:38:42
  2020 GMT
-
  result: passed
  comment: (/etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  ).notAfter=2020-11-30 18:38:42; expecting: 2020-11-10 00:00:00
stage1:testcase_31_subscription_management: passed
stage1:testcase_32_ephemeral: failed
-
  command: ls -la /sbin/mkfs.vfat 2> /dev/null | wc -l
  result: passed
  value: 1
-
  command: fdisk -l /dev/xvdj | grep '^Disk'
  result: failed
  actual: 1
-
  command: grep '/dev/xvdj ' /proc/mounts  | wc -l
  result: passed
  value: 0
-
  command: mkfs.vfat -I /dev/xvdj
  result: failed
  actual: 1
stage1:testcase_33_userdata: passed
stage1:testcase_34_cpu: passed
stage1:testcase_360_ebs: passed
stage1:testcase_39_root_is_locked: passed
stage1:testcase_41_rh_amazon_rhui_client: passed
stage1:testcase_42_ipv6: passed
stage1:testcase_50_yum_package_install: passed
stage1:testcase_55_yum_group_install: passed
stage1:testcase_60_yum_update: passed
stage1:testcase_61_yum_proxy: passed
stage1:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127185.427:6): avc:
  denied  { setattr } for  pid=1124 comm="prelink" name="" dev=pipefs
  ino=11861 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127186.522:7): avc:
  denied  { setattr } for  pid=1152 comm="prelink" name="" dev=pipefs
  ino=11995 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127201.617:11): avc:
  denied  { setattr } for  pid=1186 comm="prelink" name="" dev=pipefs
  ino=12254 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127226.911:35): avc:
  denied  { setattr } for  pid=1297 comm="prelink" name="" dev=pipefs
  ino=13083 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127228.077:36): avc:
  denied  { read write } for  pid=1415 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127228.077:37): avc:
  denied  { read write } for  pid=1416 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127228.198:38): avc:
  denied  { setattr } for  pid=1434 comm="prelink" name="" dev=pipefs
  ino=13528 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127228.356:39): avc:
  denied  { setattr } for  pid=1448 comm="prelink" name="" dev=pipefs
  ino=13627 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-73-137-17 ~]#
  expectation:   START  END
stage1:testcase_99_reboot: passed
stage2:testcase_08_memory: passed
stage2:testcase_25_uname: passed
stage2:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127185.427:6): avc:
  denied  { setattr } for  pid=1124 comm="prelink" name="" dev=pipefs
  ino=11861 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127186.522:7): avc:
  denied  { setattr } for  pid=1152 comm="prelink" name="" dev=pipefs
  ino=11995 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127201.617:11): avc:
  denied  { setattr } for  pid=1186 comm="prelink" name="" dev=pipefs
  ino=12254 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127226.911:35): avc:
  denied  { setattr } for  pid=1297 comm="prelink" name="" dev=pipefs
  ino=13083 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127228.077:36): avc:
  denied  { read write } for  pid=1415 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127228.077:37): avc:
  denied  { read write } for  pid=1416 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127228.198:38): avc:
  denied  { setattr } for  pid=1434 comm="prelink" name="" dev=pipefs
  ino=13528 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127228.356:39): avc:
  denied  { setattr } for  pid=1448 comm="prelink" name="" dev=pipefs
  ino=13627 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128765.635:6): avc:
  denied  { setattr } for  pid=1130 comm="prelink" name="" dev=pipefs
  ino=12093 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128766.658:7): avc:
  denied  { setattr } for  pid=1157 comm="prelink" name="" dev=pipefs
  ino=12221 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128769.094:8): avc:
  denied  { setattr } for  pid=1226 comm="prelink" name="" dev=pipefs
  ino=12566 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128770.256:9): avc:
  denied  { read write } for  pid=1332 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128770.259:10): avc:
  denied  { read write } for  pid=1333 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128770.431:11): avc:
  denied  { setattr } for  pid=1359 comm="prelink" name="" dev=pipefs
  ino=12977 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128770.611:12): avc:
  denied  { setattr } for  pid=1373 comm="prelink" name="" dev=pipefs
  ino=13070 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-73-137-17 ~]#
  expectation:   START  END

Comment 10 mkovacik 2014-11-28 13:28:36 UTC
closing irrelevant validation bugs


Note You need to log in before you can comment on or make changes to this bug.