Bug 1134924 - ami-bc0ed7d4 6.6 x86_64 access us-east-1
Summary: ami-bc0ed7d4 6.6 x86_64 access us-east-1
Keywords:
Status: CLOSED NOTABUG
Alias: None
Product: Cloud Image Validation
Classification: Red Hat
Component: images
Version: RHEL6.6
Hardware: x86_64
OS: Linux
unspecified
unspecified
Target Milestone: ---
Assignee: mkovacik
QA Contact: mkovacik
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2014-08-28 13:12 UTC by Martin Minar
Modified: 2016-07-04 00:58 UTC (History)
1 user (show)

Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Clone Of:
Environment:
Last Closed: 2014-11-28 13:28:44 UTC
Target Upstream Version:
Embargoed:


Attachments (Terms of Use)
ami-bc0ed7d4-log.yaml (452.58 KB, text/yaml)
2014-08-28 13:12 UTC, Martin Minar
no flags Details

Description Martin Minar 2014-08-28 13:12:30 UTC

Comment 1 Martin Minar 2014-08-28 13:12:37 UTC
Created attachment 931953 [details]
ami-bc0ed7d4-log.yaml

Comment 2 Martin Minar 2014-08-28 13:12:39 UTC
# m3.2xlarge: failed
stage1:testcase_01_bash_history: passed
stage1:testcase_02_selinux_context: passed
stage1:testcase_03_running_services: passed
stage1:testcase_04_cloud_firstboot: passed
stage1:testcase_05_grub: passed
stage1:testcase_06_inittab: passed
stage1:testcase_07_libc6_xen_conf: passed
stage1:testcase_08_memory: passed
stage1:testcase_09_nameserver: passed
stage1:testcase_10_networking: passed
stage1:testcase_11_package_set: passed
stage1:testcase_12_passwd_group: passed
stage1:testcase_14_host_details: passed
stage1:testcase_15_rhel_version: passed
stage1:testcase_16_selinux: passed
stage1:testcase_17_shells: passed
stage1:testcase_18_sshd: passed
stage1:testcase_19_rhn_system_id: passed
stage1:testcase_20_auditd: passed
stage1:testcase_21_disk_size_format: passed
stage1:testcase_22_gpg_keys: passed
stage1:testcase_23_syslog: passed
stage1:testcase_24_yum_plugin: passed
stage1:testcase_25_uname: passed
stage1:testcase_26_verify_rpms: passed
stage1:testcase_27_yum_repos: failed
-
  result: failed
  actual repos:
  {'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-releases-beta': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-client-config-server-6-beta': True}
  expected repos: {'rhui-REGION-rhel-server-supplementary': False,
  'rhui-REGION-rhel-server-rhscl': True,
  'rhui-REGION-rhel-server-source-rhscl': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-source-supplementary': False,
  'rhui-REGION-rhel-server-debug-supplementary': False,
  'rhui-REGION-rhel-server-debug-rhscl': False,
  'rhui-REGION-client-config-server-6-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-rhel-server-releases-source': False,
  'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhui-REGION-rhel-server-releases-beta':
  True, 'rhui-REGION-rhel-server-releases-optional-source': False,
  'rhui-REGION-client-config-server-6': True,
  'rhui-REGION-rhel-server-releases': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-optional': True}
stage1:testcase_30_rhn_certificates: failed
-
  command: rpm -ql rh-amazon-rhui-client rh-amazon-rhui-client-beta
  result: passed
  value: package rh-amazon-rhui-client is not installed
  /etc/init.d/choose_beta_repo  /etc/init.d/rh-cloud-firstboot
  /etc/pki/rhui/ca.crt  /etc/pki/rhui/cdn.redhat.com-chain.crt
  /etc/pki/rhui/content-rhel6-beta.key
  /etc/pki/rhui/product/content-rhel6-beta.crt
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  /etc/pki/rhui/rhui-client-config-server-6-beta.key
  /etc/yum.repos.d/redhat-rhui-beta.repo
  /etc/yum.repos.d/redhat-rhui-client-config-beta.repo
  /etc/yum.repos.d/rhui-load-balancers.conf
  /etc/yum/pluginconf.d/amazon-id.conf
  /etc/yum/pluginconf.d/rhui-lb.conf
  /usr/lib/yum-plugins/amazon-id.py
  /usr/lib/yum-plugins/amazon-id.pyc
  /usr/lib/yum-plugins/amazon-id.pyo  /usr/lib/yum-plugins/rhui-lb.py
  /usr/lib/yum-plugins/rhui-lb.pyc  /usr/lib/yum-plugins/rhui-lb.pyo
  /usr/sbin/choose_repo.py  /usr/sbin/rh-cloud-firstboot.py
-
  command: openssl x509 -in /etc/pki/rhui/ca.crt -noout -dates
  result: passed
  value: notBefore=Aug 23 19:46:02 2011 GMT  notAfter=Nov 30 19:46:02
  2017 GMT
-
  result: failed
  comment: (/etc/pki/rhui/ca.crt).notAfter=2017-11-30 19:46:02;
  expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in /etc/pki/rhui/cdn.redhat.com-chain.crt
  -noout -dates
  result: passed
  value: notBefore=Mar 18 11:24:54 2010 GMT  notAfter=Mar 13 11:24:54
  2030 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/cdn.redhat.com-chain.crt).notAfter=2030-03-13
  11:24:54; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/content-rhel6-beta.crt -noout -dates
  result: passed
  value: notBefore=Mar 29 18:34:17 2012 GMT  notAfter=Nov 30 18:34:17
  2020 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/product/content-rhel6-beta.crt).notAfter=2020-11-30
  18:34:17; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt -noout
  -dates
  result: passed
  value: notBefore=Mar 29 18:38:42 2012 GMT  notAfter=Nov 30 18:38:42
  2020 GMT
-
  result: passed
  comment: (/etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  ).notAfter=2020-11-30 18:38:42; expecting: 2020-11-10 00:00:00
stage1:testcase_31_subscription_management: passed
stage1:testcase_32_ephemeral: passed
stage1:testcase_33_userdata: passed
stage1:testcase_34_cpu: passed
stage1:testcase_35_console: passed
stage1:testcase_360_ebs: passed
stage1:testcase_39_root_is_locked: passed
stage1:testcase_41_rh_amazon_rhui_client: passed
stage1:testcase_42_ipv6: passed
stage1:testcase_50_yum_package_install: passed
stage1:testcase_55_yum_group_install: passed
stage1:testcase_60_yum_update: passed
stage1:testcase_61_yum_proxy: passed
stage1:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127184.761:6): avc:
  denied  { setattr } for  pid=1295 comm="prelink" name="" dev=pipefs
  ino=12769 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127185.378:7): avc:
  denied  { setattr } for  pid=1323 comm="prelink" name="" dev=pipefs
  ino=12903 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127187.164:11): avc:
  denied  { setattr } for  pid=1355 comm="prelink" name="" dev=pipefs
  ino=13154 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127212.672:35): avc:
  denied  { setattr } for  pid=1466 comm="prelink" name="" dev=pipefs
  ino=13769 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127213.482:37): avc:
  denied  { read write } for  pid=1593 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262348
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127213.482:36): avc:
  denied  { read write } for  pid=1594 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262346
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127213.556:38): avc:
  denied  { setattr } for  pid=1603 comm="prelink" name="" dev=pipefs
  ino=14214 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127213.700:39): avc:
  denied  { setattr } for  pid=1617 comm="prelink" name="" dev=pipefs
  ino=14319 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-218-161-250 ~]#
  expectation:   START  END
stage1:testcase_99_reboot: passed
stage2:testcase_08_memory: passed
stage2:testcase_25_uname: passed
stage2:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127184.761:6): avc:
  denied  { setattr } for  pid=1295 comm="prelink" name="" dev=pipefs
  ino=12769 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127185.378:7): avc:
  denied  { setattr } for  pid=1323 comm="prelink" name="" dev=pipefs
  ino=12903 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127187.164:11): avc:
  denied  { setattr } for  pid=1355 comm="prelink" name="" dev=pipefs
  ino=13154 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127212.672:35): avc:
  denied  { setattr } for  pid=1466 comm="prelink" name="" dev=pipefs
  ino=13769 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127213.482:37): avc:
  denied  { read write } for  pid=1593 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262348
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127213.482:36): avc:
  denied  { read write } for  pid=1594 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262346
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127213.556:38): avc:
  denied  { setattr } for  pid=1603 comm="prelink" name="" dev=pipefs
  ino=14214 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127213.700:39): avc:
  denied  { setattr } for  pid=1617 comm="prelink" name="" dev=pipefs
  ino=14319 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128711.004:6): avc:
  denied  { setattr } for  pid=1297 comm="prelink" name="" dev=pipefs
  ino=12712 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128711.841:7): avc:
  denied  { setattr } for  pid=1325 comm="prelink" name="" dev=pipefs
  ino=12846 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128714.080:8): avc:
  denied  { setattr } for  pid=1393 comm="prelink" name="" dev=pipefs
  ino=13189 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128715.547:13): avc:
  denied  { read write } for  pid=1517 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262346
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128715.581:14): avc:
  denied  { read write } for  pid=1518 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262348
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128715.706:17): avc:
  denied  { setattr } for  pid=1530 comm="prelink" name="" dev=pipefs
  ino=13645 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128715.968:25): avc:
  denied  { setattr } for  pid=1545 comm="prelink" name="" dev=pipefs
  ino=13780 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-218-161-250 ~]#
  expectation:   START  END

Comment 3 Martin Minar 2014-08-28 13:12:40 UTC
# cc2.8xlarge: failed
stage1:testcase_01_bash_history: passed
stage1:testcase_02_selinux_context: passed
stage1:testcase_03_running_services: passed
stage1:testcase_04_cloud_firstboot: passed
stage1:testcase_05_grub: passed
stage1:testcase_06_inittab: passed
stage1:testcase_07_libc6_xen_conf: passed
stage1:testcase_08_memory: passed
stage1:testcase_09_nameserver: passed
stage1:testcase_10_networking: passed
stage1:testcase_11_package_set: passed
stage1:testcase_12_passwd_group: passed
stage1:testcase_14_host_details: passed
stage1:testcase_15_rhel_version: passed
stage1:testcase_16_selinux: passed
stage1:testcase_17_shells: passed
stage1:testcase_18_sshd: passed
stage1:testcase_19_rhn_system_id: passed
stage1:testcase_20_auditd: passed
stage1:testcase_21_disk_size_format: passed
stage1:testcase_22_gpg_keys: passed
stage1:testcase_23_syslog: passed
stage1:testcase_24_yum_plugin: passed
stage1:testcase_25_uname: passed
stage1:testcase_26_verify_rpms: passed
stage1:testcase_27_yum_repos: failed
-
  result: failed
  actual repos:
  {'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-releases-beta': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-client-config-server-6-beta': True}
  expected repos: {'rhui-REGION-rhel-server-supplementary': False,
  'rhui-REGION-rhel-server-rhscl': True,
  'rhui-REGION-rhel-server-source-rhscl': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-source-supplementary': False,
  'rhui-REGION-rhel-server-debug-supplementary': False,
  'rhui-REGION-rhel-server-debug-rhscl': False,
  'rhui-REGION-client-config-server-6-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-rhel-server-releases-source': False,
  'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhui-REGION-rhel-server-releases-beta':
  True, 'rhui-REGION-rhel-server-releases-optional-source': False,
  'rhui-REGION-client-config-server-6': True,
  'rhui-REGION-rhel-server-releases': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-optional': True}
stage1:testcase_30_rhn_certificates: failed
-
  command: rpm -ql rh-amazon-rhui-client rh-amazon-rhui-client-beta
  result: passed
  value: package rh-amazon-rhui-client is not installed
  /etc/init.d/choose_beta_repo  /etc/init.d/rh-cloud-firstboot
  /etc/pki/rhui/ca.crt  /etc/pki/rhui/cdn.redhat.com-chain.crt
  /etc/pki/rhui/content-rhel6-beta.key
  /etc/pki/rhui/product/content-rhel6-beta.crt
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  /etc/pki/rhui/rhui-client-config-server-6-beta.key
  /etc/yum.repos.d/redhat-rhui-beta.repo
  /etc/yum.repos.d/redhat-rhui-client-config-beta.repo
  /etc/yum.repos.d/rhui-load-balancers.conf
  /etc/yum/pluginconf.d/amazon-id.conf
  /etc/yum/pluginconf.d/rhui-lb.conf
  /usr/lib/yum-plugins/amazon-id.py
  /usr/lib/yum-plugins/amazon-id.pyc
  /usr/lib/yum-plugins/amazon-id.pyo  /usr/lib/yum-plugins/rhui-lb.py
  /usr/lib/yum-plugins/rhui-lb.pyc  /usr/lib/yum-plugins/rhui-lb.pyo
  /usr/sbin/choose_repo.py  /usr/sbin/rh-cloud-firstboot.py
-
  command: openssl x509 -in /etc/pki/rhui/ca.crt -noout -dates
  result: passed
  value: notBefore=Aug 23 19:46:02 2011 GMT  notAfter=Nov 30 19:46:02
  2017 GMT
-
  result: failed
  comment: (/etc/pki/rhui/ca.crt).notAfter=2017-11-30 19:46:02;
  expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in /etc/pki/rhui/cdn.redhat.com-chain.crt
  -noout -dates
  result: passed
  value: notBefore=Mar 18 11:24:54 2010 GMT  notAfter=Mar 13 11:24:54
  2030 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/cdn.redhat.com-chain.crt).notAfter=2030-03-13
  11:24:54; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/content-rhel6-beta.crt -noout -dates
  result: passed
  value: notBefore=Mar 29 18:34:17 2012 GMT  notAfter=Nov 30 18:34:17
  2020 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/product/content-rhel6-beta.crt).notAfter=2020-11-30
  18:34:17; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt -noout
  -dates
  result: passed
  value: notBefore=Mar 29 18:38:42 2012 GMT  notAfter=Nov 30 18:38:42
  2020 GMT
-
  result: passed
  comment: (/etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  ).notAfter=2020-11-30 18:38:42; expecting: 2020-11-10 00:00:00
stage1:testcase_31_subscription_management: passed
stage1:testcase_32_ephemeral: passed
stage1:testcase_33_userdata: passed
stage1:testcase_34_cpu: passed
stage1:testcase_35_console: passed
stage1:testcase_360_ebs: passed
stage1:testcase_39_root_is_locked: passed
stage1:testcase_41_rh_amazon_rhui_client: passed
stage1:testcase_42_ipv6: passed
stage1:testcase_50_yum_package_install: passed
stage1:testcase_55_yum_group_install: passed
stage1:testcase_60_yum_update: passed
stage1:testcase_61_yum_proxy: passed
stage1:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127193.406:6): avc:
  denied  { setattr } for  pid=2069 comm="prelink" name="" dev=pipefs
  ino=17520 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127194.003:7): avc:
  denied  { setattr } for  pid=2097 comm="prelink" name="" dev=pipefs
  ino=17654 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127195.433:11): avc:
  denied  { setattr } for  pid=2129 comm="prelink" name="" dev=pipefs
  ino=17905 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127229.383:85): avc:
  denied  { setattr } for  pid=2299 comm="prelink" name="" dev=pipefs
  ino=18841 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127230.715:108):
  avc:  denied  { read write } for  pid=2426 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262344
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127230.717:109):
  avc:  denied  { read write } for  pid=2428 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262346
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127230.835:110):
  avc:  denied  { setattr } for  pid=2445 comm="prelink" name=""
  dev=pipefs ino=19406
  scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127230.988:113):
  avc:  denied  { setattr } for  pid=2462 comm="prelink" name=""
  dev=pipefs ino=19541
  scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-148-229-164 ~]#
  expectation:   START  END
stage1:testcase_99_reboot: passed
stage2:testcase_08_memory: passed
stage2:testcase_25_uname: passed
stage2:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127193.406:6): avc:
  denied  { setattr } for  pid=2069 comm="prelink" name="" dev=pipefs
  ino=17520 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127194.003:7): avc:
  denied  { setattr } for  pid=2097 comm="prelink" name="" dev=pipefs
  ino=17654 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127195.433:11): avc:
  denied  { setattr } for  pid=2129 comm="prelink" name="" dev=pipefs
  ino=17905 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127229.383:85): avc:
  denied  { setattr } for  pid=2299 comm="prelink" name="" dev=pipefs
  ino=18841 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127230.715:108):
  avc:  denied  { read write } for  pid=2426 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262344
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127230.717:109):
  avc:  denied  { read write } for  pid=2428 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262346
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127230.835:110):
  avc:  denied  { setattr } for  pid=2445 comm="prelink" name=""
  dev=pipefs ino=19406
  scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127230.988:113):
  avc:  denied  { setattr } for  pid=2462 comm="prelink" name=""
  dev=pipefs ino=19541
  scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128727.049:6): avc:
  denied  { setattr } for  pid=2069 comm="prelink" name="" dev=pipefs
  ino=17426 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128727.848:7): avc:
  denied  { setattr } for  pid=2097 comm="prelink" name="" dev=pipefs
  ino=17560 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128729.898:8): avc:
  denied  { setattr } for  pid=2165 comm="prelink" name="" dev=pipefs
  ino=17903 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128731.139:13): avc:
  denied  { read write } for  pid=2285 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262344
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128731.142:14): avc:
  denied  { read write } for  pid=2286 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262346
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128731.273:15): avc:
  denied  { setattr } for  pid=2301 comm="prelink" name="" dev=pipefs
  ino=18347 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128731.477:23): avc:
  denied  { setattr } for  pid=2317 comm="prelink" name="" dev=pipefs
  ino=18481 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-148-229-164 ~]#
  expectation:   START  END

Comment 4 Martin Minar 2014-08-28 13:12:42 UTC
# hs1.8xlarge: failed
stage1:testcase_01_bash_history: passed
stage1:testcase_02_selinux_context: passed
stage1:testcase_03_running_services: passed
stage1:testcase_04_cloud_firstboot: passed
stage1:testcase_05_grub: passed
stage1:testcase_06_inittab: passed
stage1:testcase_07_libc6_xen_conf: passed
stage1:testcase_08_memory: passed
stage1:testcase_09_nameserver: passed
stage1:testcase_10_networking: passed
stage1:testcase_11_package_set: passed
stage1:testcase_12_passwd_group: passed
stage1:testcase_14_host_details: passed
stage1:testcase_15_rhel_version: passed
stage1:testcase_16_selinux: passed
stage1:testcase_17_shells: passed
stage1:testcase_18_sshd: passed
stage1:testcase_19_rhn_system_id: passed
stage1:testcase_20_auditd: passed
stage1:testcase_21_disk_size_format: passed
stage1:testcase_22_gpg_keys: passed
stage1:testcase_23_syslog: passed
stage1:testcase_24_yum_plugin: passed
stage1:testcase_25_uname: passed
stage1:testcase_26_verify_rpms: passed
stage1:testcase_27_yum_repos: failed
-
  result: failed
  actual repos:
  {'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-releases-beta': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-client-config-server-6-beta': True}
  expected repos: {'rhui-REGION-rhel-server-supplementary': False,
  'rhui-REGION-rhel-server-rhscl': True,
  'rhui-REGION-rhel-server-source-rhscl': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-source-supplementary': False,
  'rhui-REGION-rhel-server-debug-supplementary': False,
  'rhui-REGION-rhel-server-debug-rhscl': False,
  'rhui-REGION-client-config-server-6-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-rhel-server-releases-source': False,
  'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhui-REGION-rhel-server-releases-beta':
  True, 'rhui-REGION-rhel-server-releases-optional-source': False,
  'rhui-REGION-client-config-server-6': True,
  'rhui-REGION-rhel-server-releases': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-optional': True}
stage1:testcase_30_rhn_certificates: failed
-
  command: rpm -ql rh-amazon-rhui-client rh-amazon-rhui-client-beta
  result: passed
  value: package rh-amazon-rhui-client is not installed
  /etc/init.d/choose_beta_repo  /etc/init.d/rh-cloud-firstboot
  /etc/pki/rhui/ca.crt  /etc/pki/rhui/cdn.redhat.com-chain.crt
  /etc/pki/rhui/content-rhel6-beta.key
  /etc/pki/rhui/product/content-rhel6-beta.crt
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  /etc/pki/rhui/rhui-client-config-server-6-beta.key
  /etc/yum.repos.d/redhat-rhui-beta.repo
  /etc/yum.repos.d/redhat-rhui-client-config-beta.repo
  /etc/yum.repos.d/rhui-load-balancers.conf
  /etc/yum/pluginconf.d/amazon-id.conf
  /etc/yum/pluginconf.d/rhui-lb.conf
  /usr/lib/yum-plugins/amazon-id.py
  /usr/lib/yum-plugins/amazon-id.pyc
  /usr/lib/yum-plugins/amazon-id.pyo  /usr/lib/yum-plugins/rhui-lb.py
  /usr/lib/yum-plugins/rhui-lb.pyc  /usr/lib/yum-plugins/rhui-lb.pyo
  /usr/sbin/choose_repo.py  /usr/sbin/rh-cloud-firstboot.py
-
  command: openssl x509 -in /etc/pki/rhui/ca.crt -noout -dates
  result: passed
  value: notBefore=Aug 23 19:46:02 2011 GMT  notAfter=Nov 30 19:46:02
  2017 GMT
-
  result: failed
  comment: (/etc/pki/rhui/ca.crt).notAfter=2017-11-30 19:46:02;
  expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in /etc/pki/rhui/cdn.redhat.com-chain.crt
  -noout -dates
  result: passed
  value: notBefore=Mar 18 11:24:54 2010 GMT  notAfter=Mar 13 11:24:54
  2030 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/cdn.redhat.com-chain.crt).notAfter=2030-03-13
  11:24:54; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/content-rhel6-beta.crt -noout -dates
  result: passed
  value: notBefore=Mar 29 18:34:17 2012 GMT  notAfter=Nov 30 18:34:17
  2020 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/product/content-rhel6-beta.crt).notAfter=2020-11-30
  18:34:17; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt -noout
  -dates
  result: passed
  value: notBefore=Mar 29 18:38:42 2012 GMT  notAfter=Nov 30 18:38:42
  2020 GMT
-
  result: passed
  comment: (/etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  ).notAfter=2020-11-30 18:38:42; expecting: 2020-11-10 00:00:00
stage1:testcase_31_subscription_management: failed
-
  command: yum --disablerepo='*' -v repolist
  result: passed
  expectation: Not loading "subscription-manager" plugin
-
  command: yum --enableplugin=subscription-manager --disablerepo='*'
  -v repolist
  result: passed
  expectation: Loading "subscription-manager" plugin
-
  command: subscription-manager list
  result: failed
  actual: subscription-manager list  Unable to verify server's
  identity:   [root@ip-10-65-32-204 ~]#
  expectation: Installed Product Status
stage1:testcase_32_ephemeral: passed
stage1:testcase_33_userdata: passed
stage1:testcase_34_cpu: passed
stage1:testcase_35_console: passed
stage1:testcase_360_ebs: passed
stage1:testcase_39_root_is_locked: passed
stage1:testcase_41_rh_amazon_rhui_client: passed
stage1:testcase_42_ipv6: passed
stage1:testcase_50_yum_package_install: passed
stage1:testcase_55_yum_group_install: passed
stage1:testcase_60_yum_update: passed
stage1:testcase_61_yum_proxy: passed
stage1:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127231.532:6): avc:
  denied  { setattr } for  pid=1763 comm="prelink" name="" dev=pipefs
  ino=15227 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127233.853:7): avc:
  denied  { setattr } for  pid=1815 comm="prelink" name="" dev=pipefs
  ino=15489 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127237.053:11): avc:
  denied  { setattr } for  pid=1871 comm="prelink" name="" dev=pipefs
  ino=15920 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127257.708:35): avc:
  denied  { setattr } for  pid=1983 comm="prelink" name="" dev=pipefs
  ino=16541 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127259.121:36): avc:
  denied  { read write } for  pid=2111 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262346
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127259.123:37): avc:
  denied  { read write } for  pid=2112 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262348
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127259.187:38): avc:
  denied  { setattr } for  pid=2120 comm="prelink" name="" dev=pipefs
  ino=16986 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127259.360:39): avc:
  denied  { setattr } for  pid=2134 comm="prelink" name="" dev=pipefs
  ino=17091 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-65-32-204 ~]#
  expectation:   START  END
stage1:testcase_99_reboot: passed
stage2:testcase_08_memory: passed
stage2:testcase_25_uname: passed
stage2:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127231.532:6): avc:
  denied  { setattr } for  pid=1763 comm="prelink" name="" dev=pipefs
  ino=15227 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127233.853:7): avc:
  denied  { setattr } for  pid=1815 comm="prelink" name="" dev=pipefs
  ino=15489 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127237.053:11): avc:
  denied  { setattr } for  pid=1871 comm="prelink" name="" dev=pipefs
  ino=15920 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127257.708:35): avc:
  denied  { setattr } for  pid=1983 comm="prelink" name="" dev=pipefs
  ino=16541 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127259.121:36): avc:
  denied  { read write } for  pid=2111 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262346
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127259.123:37): avc:
  denied  { read write } for  pid=2112 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262348
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127259.187:38): avc:
  denied  { setattr } for  pid=2120 comm="prelink" name="" dev=pipefs
  ino=16986 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127259.360:39): avc:
  denied  { setattr } for  pid=2134 comm="prelink" name="" dev=pipefs
  ino=17091 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130062.049:999):
  avc:  denied  { setattr } for  pid=4526 comm="prelink" name=""
  dev=pipefs ino=45201
  scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:system_cronjob_t:s0-s0:c0.c1023
  tclass=fifo_file  /var/log/audit/audit.log:type=AVC
  msg=audit(1409130803.742:6): avc:  denied  { setattr } for  pid=1820
  comm="prelink" name="" dev=pipefs ino=15591
  scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130805.795:7): avc:
  denied  { setattr } for  pid=1917 comm="prelink" name="" dev=pipefs
  ino=16186 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130808.952:8): avc:
  denied  { setattr } for  pid=2054 comm="prelink" name="" dev=pipefs
  ino=17041 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130810.023:20): avc:
  denied  { read write } for  pid=2165 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262345
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130810.025:21): avc:
  denied  { read write } for  pid=2166 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262347
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130810.234:24): avc:
  denied  { setattr } for  pid=2192 comm="prelink" name="" dev=pipefs
  ino=17530 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130810.439:25): avc:
  denied  { setattr } for  pid=2206 comm="prelink" name="" dev=pipefs
  ino=17635 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-65-32-204 ~]#
  expectation:   START  END

Comment 5 Martin Minar 2014-08-28 13:12:44 UTC
# cg1.4xlarge: failed
stage1:testcase_01_bash_history: passed
stage1:testcase_02_selinux_context: passed
stage1:testcase_03_running_services: passed
stage1:testcase_04_cloud_firstboot: passed
stage1:testcase_05_grub: passed
stage1:testcase_06_inittab: passed
stage1:testcase_07_libc6_xen_conf: passed
stage1:testcase_08_memory: passed
stage1:testcase_09_nameserver: passed
stage1:testcase_10_networking: passed
stage1:testcase_11_package_set: passed
stage1:testcase_12_passwd_group: passed
stage1:testcase_14_host_details: passed
stage1:testcase_15_rhel_version: passed
stage1:testcase_16_selinux: passed
stage1:testcase_17_shells: passed
stage1:testcase_18_sshd: passed
stage1:testcase_19_rhn_system_id: passed
stage1:testcase_20_auditd: passed
stage1:testcase_21_disk_size_format: passed
stage1:testcase_22_gpg_keys: passed
stage1:testcase_23_syslog: passed
stage1:testcase_24_yum_plugin: passed
stage1:testcase_25_uname: passed
stage1:testcase_26_verify_rpms: passed
stage1:testcase_27_yum_repos: failed
-
  result: failed
  actual repos:
  {'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-releases-beta': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-client-config-server-6-beta': True}
  expected repos: {'rhui-REGION-rhel-server-supplementary': False,
  'rhui-REGION-rhel-server-rhscl': True,
  'rhui-REGION-rhel-server-source-rhscl': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-source-supplementary': False,
  'rhui-REGION-rhel-server-debug-supplementary': False,
  'rhui-REGION-rhel-server-debug-rhscl': False,
  'rhui-REGION-client-config-server-6-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-rhel-server-releases-source': False,
  'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhui-REGION-rhel-server-releases-beta':
  True, 'rhui-REGION-rhel-server-releases-optional-source': False,
  'rhui-REGION-client-config-server-6': True,
  'rhui-REGION-rhel-server-releases': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-optional': True}
stage1:testcase_30_rhn_certificates: failed
-
  command: rpm -ql rh-amazon-rhui-client rh-amazon-rhui-client-beta
  result: passed
  value: package rh-amazon-rhui-client is not installed
  /etc/init.d/choose_beta_repo  /etc/init.d/rh-cloud-firstboot
  /etc/pki/rhui/ca.crt  /etc/pki/rhui/cdn.redhat.com-chain.crt
  /etc/pki/rhui/content-rhel6-beta.key
  /etc/pki/rhui/product/content-rhel6-beta.crt
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  /etc/pki/rhui/rhui-client-config-server-6-beta.key
  /etc/yum.repos.d/redhat-rhui-beta.repo
  /etc/yum.repos.d/redhat-rhui-client-config-beta.repo
  /etc/yum.repos.d/rhui-load-balancers.conf
  /etc/yum/pluginconf.d/amazon-id.conf
  /etc/yum/pluginconf.d/rhui-lb.conf
  /usr/lib/yum-plugins/amazon-id.py
  /usr/lib/yum-plugins/amazon-id.pyc
  /usr/lib/yum-plugins/amazon-id.pyo  /usr/lib/yum-plugins/rhui-lb.py
  /usr/lib/yum-plugins/rhui-lb.pyc  /usr/lib/yum-plugins/rhui-lb.pyo
  /usr/sbin/choose_repo.py  /usr/sbin/rh-cloud-firstboot.py
-
  command: openssl x509 -in /etc/pki/rhui/ca.crt -noout -dates
  result: passed
  value: notBefore=Aug 23 19:46:02 2011 GMT  notAfter=Nov 30 19:46:02
  2017 GMT
-
  result: failed
  comment: (/etc/pki/rhui/ca.crt).notAfter=2017-11-30 19:46:02;
  expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in /etc/pki/rhui/cdn.redhat.com-chain.crt
  -noout -dates
  result: passed
  value: notBefore=Mar 18 11:24:54 2010 GMT  notAfter=Mar 13 11:24:54
  2030 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/cdn.redhat.com-chain.crt).notAfter=2030-03-13
  11:24:54; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/content-rhel6-beta.crt -noout -dates
  result: passed
  value: notBefore=Mar 29 18:34:17 2012 GMT  notAfter=Nov 30 18:34:17
  2020 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/product/content-rhel6-beta.crt).notAfter=2020-11-30
  18:34:17; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt -noout
  -dates
  result: passed
  value: notBefore=Mar 29 18:38:42 2012 GMT  notAfter=Nov 30 18:38:42
  2020 GMT
-
  result: passed
  comment: (/etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  ).notAfter=2020-11-30 18:38:42; expecting: 2020-11-10 00:00:00
stage1:testcase_31_subscription_management: passed
stage1:testcase_32_ephemeral: passed
stage1:testcase_33_userdata: passed
stage1:testcase_34_cpu: passed
stage1:testcase_35_console: passed
stage1:testcase_360_ebs: passed
stage1:testcase_39_root_is_locked: passed
stage1:testcase_41_rh_amazon_rhui_client: passed
stage1:testcase_42_ipv6: passed
stage1:testcase_50_yum_package_install: passed
stage1:testcase_55_yum_group_install: passed
stage1:testcase_60_yum_update: passed
stage1:testcase_61_yum_proxy: passed
stage1:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127216.686:6): avc:
  denied  { setattr } for  pid=1559 comm="prelink" name="" dev=pipefs
  ino=15093 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127217.288:7): avc:
  denied  { setattr } for  pid=1587 comm="prelink" name="" dev=pipefs
  ino=15227 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127218.445:11): avc:
  denied  { setattr } for  pid=1619 comm="prelink" name="" dev=pipefs
  ino=15478 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127238.808:33): avc:
  denied  { setattr } for  pid=1730 comm="prelink" name="" dev=pipefs
  ino=16087 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127239.731:36): avc:
  denied  { read write } for  pid=1860 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262348
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127239.735:37): avc:
  denied  { read write } for  pid=1862 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262346
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127239.779:38): avc:
  denied  { setattr } for  pid=1867 comm="prelink" name="" dev=pipefs
  ino=16538 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127239.989:39): avc:
  denied  { setattr } for  pid=1881 comm="prelink" name="" dev=pipefs
  ino=16643 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-148-130-57 ~]#
  expectation:   START  END
stage1:testcase_99_reboot: passed
stage2:testcase_08_memory: passed
stage2:testcase_25_uname: passed
stage2:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127216.686:6): avc:
  denied  { setattr } for  pid=1559 comm="prelink" name="" dev=pipefs
  ino=15093 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127217.288:7): avc:
  denied  { setattr } for  pid=1587 comm="prelink" name="" dev=pipefs
  ino=15227 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127218.445:11): avc:
  denied  { setattr } for  pid=1619 comm="prelink" name="" dev=pipefs
  ino=15478 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127238.808:33): avc:
  denied  { setattr } for  pid=1730 comm="prelink" name="" dev=pipefs
  ino=16087 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127239.731:36): avc:
  denied  { read write } for  pid=1860 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262348
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127239.735:37): avc:
  denied  { read write } for  pid=1862 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262346
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127239.779:38): avc:
  denied  { setattr } for  pid=1867 comm="prelink" name="" dev=pipefs
  ino=16538 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127239.989:39): avc:
  denied  { setattr } for  pid=1881 comm="prelink" name="" dev=pipefs
  ino=16643 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128786.029:6): avc:
  denied  { setattr } for  pid=1555 comm="prelink" name="" dev=pipefs
  ino=15002 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128786.646:7): avc:
  denied  { setattr } for  pid=1583 comm="prelink" name="" dev=pipefs
  ino=15136 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128788.123:8): avc:
  denied  { setattr } for  pid=1651 comm="prelink" name="" dev=pipefs
  ino=15479 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128788.934:13): avc:
  denied  { read write } for  pid=1775 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262346
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128788.936:14): avc:
  denied  { read write } for  pid=1777 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262348
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128789.001:15): avc:
  denied  { setattr } for  pid=1787 comm="prelink" name="" dev=pipefs
  ino=15920 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128789.165:19): avc:
  denied  { setattr } for  pid=1803 comm="prelink" name="" dev=pipefs
  ino=16043 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-148-130-57 ~]#
  expectation:   START  END

Comment 6 Martin Minar 2014-08-28 13:12:46 UTC
# hi1.4xlarge: failed
stage1:testcase_01_bash_history: passed
stage1:testcase_02_selinux_context: passed
stage1:testcase_03_running_services: passed
stage1:testcase_04_cloud_firstboot: passed
stage1:testcase_05_grub: passed
stage1:testcase_06_inittab: passed
stage1:testcase_07_libc6_xen_conf: passed
stage1:testcase_08_memory: passed
stage1:testcase_09_nameserver: passed
stage1:testcase_10_networking: passed
stage1:testcase_11_package_set: passed
stage1:testcase_12_passwd_group: passed
stage1:testcase_14_host_details: passed
stage1:testcase_15_rhel_version: passed
stage1:testcase_16_selinux: passed
stage1:testcase_17_shells: passed
stage1:testcase_18_sshd: passed
stage1:testcase_19_rhn_system_id: passed
stage1:testcase_20_auditd: passed
stage1:testcase_21_disk_size_format: passed
stage1:testcase_22_gpg_keys: passed
stage1:testcase_23_syslog: passed
stage1:testcase_24_yum_plugin: passed
stage1:testcase_25_uname: passed
stage1:testcase_26_verify_rpms: passed
stage1:testcase_27_yum_repos: failed
-
  result: failed
  actual repos:
  {'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-releases-beta': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-client-config-server-6-beta': True}
  expected repos: {'rhui-REGION-rhel-server-supplementary': False,
  'rhui-REGION-rhel-server-rhscl': True,
  'rhui-REGION-rhel-server-source-rhscl': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-source-supplementary': False,
  'rhui-REGION-rhel-server-debug-supplementary': False,
  'rhui-REGION-rhel-server-debug-rhscl': False,
  'rhui-REGION-client-config-server-6-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-rhel-server-releases-source': False,
  'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhui-REGION-rhel-server-releases-beta':
  True, 'rhui-REGION-rhel-server-releases-optional-source': False,
  'rhui-REGION-client-config-server-6': True,
  'rhui-REGION-rhel-server-releases': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-optional': True}
stage1:testcase_30_rhn_certificates: failed
-
  command: rpm -ql rh-amazon-rhui-client rh-amazon-rhui-client-beta
  result: passed
  value: package rh-amazon-rhui-client is not installed
  /etc/init.d/choose_beta_repo  /etc/init.d/rh-cloud-firstboot
  /etc/pki/rhui/ca.crt  /etc/pki/rhui/cdn.redhat.com-chain.crt
  /etc/pki/rhui/content-rhel6-beta.key
  /etc/pki/rhui/product/content-rhel6-beta.crt
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  /etc/pki/rhui/rhui-client-config-server-6-beta.key
  /etc/yum.repos.d/redhat-rhui-beta.repo
  /etc/yum.repos.d/redhat-rhui-client-config-beta.repo
  /etc/yum.repos.d/rhui-load-balancers.conf
  /etc/yum/pluginconf.d/amazon-id.conf
  /etc/yum/pluginconf.d/rhui-lb.conf
  /usr/lib/yum-plugins/amazon-id.py
  /usr/lib/yum-plugins/amazon-id.pyc
  /usr/lib/yum-plugins/amazon-id.pyo  /usr/lib/yum-plugins/rhui-lb.py
  /usr/lib/yum-plugins/rhui-lb.pyc  /usr/lib/yum-plugins/rhui-lb.pyo
  /usr/sbin/choose_repo.py  /usr/sbin/rh-cloud-firstboot.py
-
  command: openssl x509 -in /etc/pki/rhui/ca.crt -noout -dates
  result: passed
  value: notBefore=Aug 23 19:46:02 2011 GMT  notAfter=Nov 30 19:46:02
  2017 GMT
-
  result: failed
  comment: (/etc/pki/rhui/ca.crt).notAfter=2017-11-30 19:46:02;
  expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in /etc/pki/rhui/cdn.redhat.com-chain.crt
  -noout -dates
  result: passed
  value: notBefore=Mar 18 11:24:54 2010 GMT  notAfter=Mar 13 11:24:54
  2030 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/cdn.redhat.com-chain.crt).notAfter=2030-03-13
  11:24:54; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/content-rhel6-beta.crt -noout -dates
  result: passed
  value: notBefore=Mar 29 18:34:17 2012 GMT  notAfter=Nov 30 18:34:17
  2020 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/product/content-rhel6-beta.crt).notAfter=2020-11-30
  18:34:17; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt -noout
  -dates
  result: passed
  value: notBefore=Mar 29 18:38:42 2012 GMT  notAfter=Nov 30 18:38:42
  2020 GMT
-
  result: passed
  comment: (/etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  ).notAfter=2020-11-30 18:38:42; expecting: 2020-11-10 00:00:00
stage1:testcase_31_subscription_management: passed
stage1:testcase_32_ephemeral: passed
stage1:testcase_33_userdata: passed
stage1:testcase_34_cpu: passed
stage1:testcase_35_console: passed
stage1:testcase_360_ebs: passed
stage1:testcase_39_root_is_locked: passed
stage1:testcase_41_rh_amazon_rhui_client: passed
stage1:testcase_42_ipv6: passed
stage1:testcase_50_yum_package_install: passed
stage1:testcase_55_yum_group_install: passed
stage1:testcase_60_yum_update: passed
stage1:testcase_61_yum_proxy: passed
stage1:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127205.294:6): avc:
  denied  { setattr } for  pid=1552 comm="prelink" name="" dev=pipefs
  ino=14047 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127206.009:7): avc:
  denied  { setattr } for  pid=1580 comm="prelink" name="" dev=pipefs
  ino=14181 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127207.401:11): avc:
  denied  { setattr } for  pid=1612 comm="prelink" name="" dev=pipefs
  ino=14432 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127237.532:35): avc:
  denied  { setattr } for  pid=1723 comm="prelink" name="" dev=pipefs
  ino=15047 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127238.638:36): avc:
  denied  { read write } for  pid=1850 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262346
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127238.638:37): avc:
  denied  { read write } for  pid=1852 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262348
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127238.712:43): avc:
  denied  { setattr } for  pid=1860 comm="prelink" name="" dev=pipefs
  ino=15492 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127238.907:44): avc:
  denied  { setattr } for  pid=1875 comm="prelink" name="" dev=pipefs
  ino=15610 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-148-146-134 ~]#
  expectation:   START  END
stage1:testcase_99_reboot: passed
stage2:testcase_08_memory: passed
stage2:testcase_25_uname: passed
stage2:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127205.294:6): avc:
  denied  { setattr } for  pid=1552 comm="prelink" name="" dev=pipefs
  ino=14047 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127206.009:7): avc:
  denied  { setattr } for  pid=1580 comm="prelink" name="" dev=pipefs
  ino=14181 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127207.401:11): avc:
  denied  { setattr } for  pid=1612 comm="prelink" name="" dev=pipefs
  ino=14432 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127237.532:35): avc:
  denied  { setattr } for  pid=1723 comm="prelink" name="" dev=pipefs
  ino=15047 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127238.638:36): avc:
  denied  { read write } for  pid=1850 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262346
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127238.638:37): avc:
  denied  { read write } for  pid=1852 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262348
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127238.712:43): avc:
  denied  { setattr } for  pid=1860 comm="prelink" name="" dev=pipefs
  ino=15492 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127238.907:44): avc:
  denied  { setattr } for  pid=1875 comm="prelink" name="" dev=pipefs
  ino=15610 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128784.691:6): avc:
  denied  { setattr } for  pid=1547 comm="prelink" name="" dev=pipefs
  ino=13964 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128785.499:7): avc:
  denied  { setattr } for  pid=1575 comm="prelink" name="" dev=pipefs
  ino=14098 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128787.535:8): avc:
  denied  { setattr } for  pid=1643 comm="prelink" name="" dev=pipefs
  ino=14441 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128788.599:13): avc:
  denied  { read write } for  pid=1767 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262346
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128788.615:14): avc:
  denied  { read write } for  pid=1768 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262348
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128788.697:15): avc:
  denied  { setattr } for  pid=1779 comm="prelink" name="" dev=pipefs
  ino=14882 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128788.897:16): avc:
  denied  { setattr } for  pid=1793 comm="prelink" name="" dev=pipefs
  ino=14989 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-148-146-134 ~]#
  expectation:   START  END

Comment 7 Martin Minar 2014-08-28 13:12:48 UTC
# cr1.8xlarge: failed
stage1:testcase_01_bash_history: passed
stage1:testcase_02_selinux_context: passed
stage1:testcase_03_running_services: passed
stage1:testcase_04_cloud_firstboot: passed
stage1:testcase_05_grub: passed
stage1:testcase_06_inittab: passed
stage1:testcase_07_libc6_xen_conf: passed
stage1:testcase_08_memory: passed
stage1:testcase_09_nameserver: passed
stage1:testcase_10_networking: passed
stage1:testcase_11_package_set: passed
stage1:testcase_12_passwd_group: passed
stage1:testcase_14_host_details: passed
stage1:testcase_15_rhel_version: passed
stage1:testcase_16_selinux: passed
stage1:testcase_17_shells: passed
stage1:testcase_18_sshd: passed
stage1:testcase_19_rhn_system_id: passed
stage1:testcase_20_auditd: passed
stage1:testcase_21_disk_size_format: passed
stage1:testcase_22_gpg_keys: passed
stage1:testcase_23_syslog: passed
stage1:testcase_24_yum_plugin: passed
stage1:testcase_25_uname: passed
stage1:testcase_26_verify_rpms: passed
stage1:testcase_27_yum_repos: failed
-
  result: failed
  actual repos:
  {'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-releases-beta': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-client-config-server-6-beta': True}
  expected repos: {'rhui-REGION-rhel-server-supplementary': False,
  'rhui-REGION-rhel-server-rhscl': True,
  'rhui-REGION-rhel-server-source-rhscl': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-source-supplementary': False,
  'rhui-REGION-rhel-server-debug-supplementary': False,
  'rhui-REGION-rhel-server-debug-rhscl': False,
  'rhui-REGION-client-config-server-6-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-rhel-server-releases-source': False,
  'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhui-REGION-rhel-server-releases-beta':
  True, 'rhui-REGION-rhel-server-releases-optional-source': False,
  'rhui-REGION-client-config-server-6': True,
  'rhui-REGION-rhel-server-releases': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-optional': True}
stage1:testcase_30_rhn_certificates: failed
-
  command: rpm -ql rh-amazon-rhui-client rh-amazon-rhui-client-beta
  result: passed
  value: package rh-amazon-rhui-client is not installed
  /etc/init.d/choose_beta_repo  /etc/init.d/rh-cloud-firstboot
  /etc/pki/rhui/ca.crt  /etc/pki/rhui/cdn.redhat.com-chain.crt
  /etc/pki/rhui/content-rhel6-beta.key
  /etc/pki/rhui/product/content-rhel6-beta.crt
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  /etc/pki/rhui/rhui-client-config-server-6-beta.key
  /etc/yum.repos.d/redhat-rhui-beta.repo
  /etc/yum.repos.d/redhat-rhui-client-config-beta.repo
  /etc/yum.repos.d/rhui-load-balancers.conf
  /etc/yum/pluginconf.d/amazon-id.conf
  /etc/yum/pluginconf.d/rhui-lb.conf
  /usr/lib/yum-plugins/amazon-id.py
  /usr/lib/yum-plugins/amazon-id.pyc
  /usr/lib/yum-plugins/amazon-id.pyo  /usr/lib/yum-plugins/rhui-lb.py
  /usr/lib/yum-plugins/rhui-lb.pyc  /usr/lib/yum-plugins/rhui-lb.pyo
  /usr/sbin/choose_repo.py  /usr/sbin/rh-cloud-firstboot.py
-
  command: openssl x509 -in /etc/pki/rhui/ca.crt -noout -dates
  result: passed
  value: notBefore=Aug 23 19:46:02 2011 GMT  notAfter=Nov 30 19:46:02
  2017 GMT
-
  result: failed
  comment: (/etc/pki/rhui/ca.crt).notAfter=2017-11-30 19:46:02;
  expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in /etc/pki/rhui/cdn.redhat.com-chain.crt
  -noout -dates
  result: passed
  value: notBefore=Mar 18 11:24:54 2010 GMT  notAfter=Mar 13 11:24:54
  2030 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/cdn.redhat.com-chain.crt).notAfter=2030-03-13
  11:24:54; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/content-rhel6-beta.crt -noout -dates
  result: passed
  value: notBefore=Mar 29 18:34:17 2012 GMT  notAfter=Nov 30 18:34:17
  2020 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/product/content-rhel6-beta.crt).notAfter=2020-11-30
  18:34:17; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt -noout
  -dates
  result: passed
  value: notBefore=Mar 29 18:38:42 2012 GMT  notAfter=Nov 30 18:38:42
  2020 GMT
-
  result: passed
  comment: (/etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  ).notAfter=2020-11-30 18:38:42; expecting: 2020-11-10 00:00:00
stage1:testcase_31_subscription_management: passed
stage1:testcase_32_ephemeral: passed
stage1:testcase_33_userdata: passed
stage1:testcase_34_cpu: passed
stage1:testcase_35_console: passed
stage1:testcase_360_ebs: passed
stage1:testcase_39_root_is_locked: passed
stage1:testcase_41_rh_amazon_rhui_client: passed
stage1:testcase_42_ipv6: passed
stage1:testcase_50_yum_package_install: passed
stage1:testcase_55_yum_group_install: passed
stage1:testcase_60_yum_update: passed
stage1:testcase_61_yum_proxy: passed
stage1:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127181.209:6): avc:
  denied  { setattr } for  pid=2064 comm="prelink" name="" dev=pipefs
  ino=17515 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127181.791:7): avc:
  denied  { setattr } for  pid=2092 comm="prelink" name="" dev=pipefs
  ino=17649 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127182.970:11): avc:
  denied  { setattr } for  pid=2124 comm="prelink" name="" dev=pipefs
  ino=17900 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127206.440:35): avc:
  denied  { setattr } for  pid=2235 comm="prelink" name="" dev=pipefs
  ino=18515 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127208.153:36): avc:
  denied  { read write } for  pid=2361 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262346
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127208.155:37): avc:
  denied  { read write } for  pid=2362 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262348
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127208.265:38): avc:
  denied  { setattr } for  pid=2372 comm="prelink" name="" dev=pipefs
  ino=18960 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127208.405:39): avc:
  denied  { setattr } for  pid=2386 comm="prelink" name="" dev=pipefs
  ino=19065 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-178-151-120 ~]#
  expectation:   START  END
stage1:testcase_99_reboot: passed
stage2:testcase_08_memory: passed
stage2:testcase_25_uname: passed
stage2:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127181.209:6): avc:
  denied  { setattr } for  pid=2064 comm="prelink" name="" dev=pipefs
  ino=17515 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127181.791:7): avc:
  denied  { setattr } for  pid=2092 comm="prelink" name="" dev=pipefs
  ino=17649 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127182.970:11): avc:
  denied  { setattr } for  pid=2124 comm="prelink" name="" dev=pipefs
  ino=17900 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127206.440:35): avc:
  denied  { setattr } for  pid=2235 comm="prelink" name="" dev=pipefs
  ino=18515 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127208.153:36): avc:
  denied  { read write } for  pid=2361 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262346
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127208.155:37): avc:
  denied  { read write } for  pid=2362 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262348
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127208.265:38): avc:
  denied  { setattr } for  pid=2372 comm="prelink" name="" dev=pipefs
  ino=18960 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127208.405:39): avc:
  denied  { setattr } for  pid=2386 comm="prelink" name="" dev=pipefs
  ino=19065 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128729.846:6): avc:
  denied  { setattr } for  pid=2069 comm="prelink" name="" dev=pipefs
  ino=17457 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128730.509:7): avc:
  denied  { setattr } for  pid=2097 comm="prelink" name="" dev=pipefs
  ino=17591 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128732.177:8): avc:
  denied  { setattr } for  pid=2165 comm="prelink" name="" dev=pipefs
  ino=17934 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128733.144:13): avc:
  denied  { read write } for  pid=2289 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262345
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128733.145:14): avc:
  denied  { read write } for  pid=2290 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262347
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128733.256:15): avc:
  denied  { setattr } for  pid=2301 comm="prelink" name="" dev=pipefs
  ino=18375 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128733.479:16): avc:
  denied  { setattr } for  pid=2315 comm="prelink" name="" dev=pipefs
  ino=18482 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-178-151-120 ~]#
  expectation:   START  END

Comment 8 Martin Minar 2014-08-28 13:12:50 UTC
# m3.xlarge: failed
stage1:testcase_01_bash_history: passed
stage1:testcase_02_selinux_context: passed
stage1:testcase_03_running_services: passed
stage1:testcase_04_cloud_firstboot: passed
stage1:testcase_05_grub: passed
stage1:testcase_06_inittab: passed
stage1:testcase_07_libc6_xen_conf: passed
stage1:testcase_08_memory: passed
stage1:testcase_09_nameserver: passed
stage1:testcase_10_networking: passed
stage1:testcase_11_package_set: passed
stage1:testcase_12_passwd_group: passed
stage1:testcase_14_host_details: passed
stage1:testcase_15_rhel_version: passed
stage1:testcase_16_selinux: passed
stage1:testcase_17_shells: passed
stage1:testcase_18_sshd: passed
stage1:testcase_19_rhn_system_id: passed
stage1:testcase_20_auditd: passed
stage1:testcase_21_disk_size_format: passed
stage1:testcase_22_gpg_keys: passed
stage1:testcase_23_syslog: passed
stage1:testcase_24_yum_plugin: passed
stage1:testcase_25_uname: passed
stage1:testcase_26_verify_rpms: passed
stage1:testcase_27_yum_repos: failed
-
  result: failed
  actual repos:
  {'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-releases-beta': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-client-config-server-6-beta': True}
  expected repos: {'rhui-REGION-rhel-server-supplementary': False,
  'rhui-REGION-rhel-server-rhscl': True,
  'rhui-REGION-rhel-server-source-rhscl': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-source-supplementary': False,
  'rhui-REGION-rhel-server-debug-supplementary': False,
  'rhui-REGION-rhel-server-debug-rhscl': False,
  'rhui-REGION-client-config-server-6-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-rhel-server-releases-source': False,
  'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhui-REGION-rhel-server-releases-beta':
  True, 'rhui-REGION-rhel-server-releases-optional-source': False,
  'rhui-REGION-client-config-server-6': True,
  'rhui-REGION-rhel-server-releases': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-optional': True}
stage1:testcase_30_rhn_certificates: failed
-
  command: rpm -ql rh-amazon-rhui-client rh-amazon-rhui-client-beta
  result: passed
  value: package rh-amazon-rhui-client is not installed
  /etc/init.d/choose_beta_repo  /etc/init.d/rh-cloud-firstboot
  /etc/pki/rhui/ca.crt  /etc/pki/rhui/cdn.redhat.com-chain.crt
  /etc/pki/rhui/content-rhel6-beta.key
  /etc/pki/rhui/product/content-rhel6-beta.crt
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  /etc/pki/rhui/rhui-client-config-server-6-beta.key
  /etc/yum.repos.d/redhat-rhui-beta.repo
  /etc/yum.repos.d/redhat-rhui-client-config-beta.repo
  /etc/yum.repos.d/rhui-load-balancers.conf
  /etc/yum/pluginconf.d/amazon-id.conf
  /etc/yum/pluginconf.d/rhui-lb.conf
  /usr/lib/yum-plugins/amazon-id.py
  /usr/lib/yum-plugins/amazon-id.pyc
  /usr/lib/yum-plugins/amazon-id.pyo  /usr/lib/yum-plugins/rhui-lb.py
  /usr/lib/yum-plugins/rhui-lb.pyc  /usr/lib/yum-plugins/rhui-lb.pyo
  /usr/sbin/choose_repo.py  /usr/sbin/rh-cloud-firstboot.py
-
  command: openssl x509 -in /etc/pki/rhui/ca.crt -noout -dates
  result: passed
  value: notBefore=Aug 23 19:46:02 2011 GMT  notAfter=Nov 30 19:46:02
  2017 GMT
-
  result: failed
  comment: (/etc/pki/rhui/ca.crt).notAfter=2017-11-30 19:46:02;
  expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in /etc/pki/rhui/cdn.redhat.com-chain.crt
  -noout -dates
  result: passed
  value: notBefore=Mar 18 11:24:54 2010 GMT  notAfter=Mar 13 11:24:54
  2030 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/cdn.redhat.com-chain.crt).notAfter=2030-03-13
  11:24:54; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/content-rhel6-beta.crt -noout -dates
  result: passed
  value: notBefore=Mar 29 18:34:17 2012 GMT  notAfter=Nov 30 18:34:17
  2020 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/product/content-rhel6-beta.crt).notAfter=2020-11-30
  18:34:17; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt -noout
  -dates
  result: passed
  value: notBefore=Mar 29 18:38:42 2012 GMT  notAfter=Nov 30 18:38:42
  2020 GMT
-
  result: passed
  comment: (/etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  ).notAfter=2020-11-30 18:38:42; expecting: 2020-11-10 00:00:00
stage1:testcase_31_subscription_management: failed
-
  command: yum --disablerepo='*' -v repolist
  result: passed
  expectation: Not loading "subscription-manager" plugin
-
  command: yum --enableplugin=subscription-manager --disablerepo='*'
  -v repolist
  result: passed
  expectation: Loading "subscription-manager" plugin
-
  command: subscription-manager list
  result: failed
  actual: Server error attempting a GET to /subscription/ returned
  status 502  Config time: 5.137  Yum Version: 3.2.29  mirrorlist: htt
  ps://rhui2-cds01.us-east-1.aws.ce.redhat.com/pulp/mirror/content/bet
  a/rhel/rhui/server/6/6Server/x86_64/optional/source/SRPMS
  mirrorlist: https://rhui2-cds01.us-east-1.aws.ce.redhat.com/pulp/mir
  ror/content/beta/rhel/rhui/server/6/6Server/x86_64/os  mirrorlist: h
  ttps://rhui2-cds01.us-east-1.aws.ce.redhat.com/pulp/mirror/content/b
  eta/rhel/rhui/server/6/6Server/x86_64/source/SRPMS  mirrorlist: http
  s://rhui2-cds01.us-east-1.aws.ce.redhat.com/pulp/mirror/content/beta
  /rhel/rhui/server/6/6Server/x86_64/optional/os  mirrorlist: https://
  rhui2-cds01.us-east-1.aws.ce.redhat.com/pulp/mirror/rhui-client-conf
  ig/beta/rhel/server/6/x86_64/os  Setting up Package Sacks  repolist:
  0  [root@ip-10-79-141-142 ~]# subscription-manager list  Unable to
  verify server's identity:   [root@ip-10-79-141-142 ~]#
  expectation: Installed Product Status
stage1:testcase_32_ephemeral: passed
stage1:testcase_33_userdata: passed
stage1:testcase_34_cpu: passed
stage1:testcase_35_console: passed
stage1:testcase_360_ebs: passed
stage1:testcase_39_root_is_locked: passed
stage1:testcase_41_rh_amazon_rhui_client: passed
stage1:testcase_42_ipv6: passed
stage1:testcase_50_yum_package_install: passed
stage1:testcase_55_yum_group_install: passed
stage1:testcase_60_yum_update: passed
stage1:testcase_61_yum_proxy: passed
stage1:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127182.303:6): avc:
  denied  { setattr } for  pid=1168 comm="prelink" name="" dev=pipefs
  ino=12115 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127182.871:7): avc:
  denied  { setattr } for  pid=1196 comm="prelink" name="" dev=pipefs
  ino=12249 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127183.924:11): avc:
  denied  { setattr } for  pid=1228 comm="prelink" name="" dev=pipefs
  ino=12500 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127207.838:35): avc:
  denied  { setattr } for  pid=1339 comm="prelink" name="" dev=pipefs
  ino=13115 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127209.318:36): avc:
  denied  { read write } for  pid=1467 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262348
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127209.318:37): avc:
  denied  { read write } for  pid=1468 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262346
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127209.403:38): avc:
  denied  { setattr } for  pid=1476 comm="prelink" name="" dev=pipefs
  ino=13560 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127209.500:39): avc:
  denied  { setattr } for  pid=1490 comm="prelink" name="" dev=pipefs
  ino=13665 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-79-141-142 ~]#
  expectation:   START  END
stage1:testcase_99_reboot: passed
stage2:testcase_08_memory: passed
stage2:testcase_25_uname: passed
stage2:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127182.303:6): avc:
  denied  { setattr } for  pid=1168 comm="prelink" name="" dev=pipefs
  ino=12115 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127182.871:7): avc:
  denied  { setattr } for  pid=1196 comm="prelink" name="" dev=pipefs
  ino=12249 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127183.924:11): avc:
  denied  { setattr } for  pid=1228 comm="prelink" name="" dev=pipefs
  ino=12500 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127207.838:35): avc:
  denied  { setattr } for  pid=1339 comm="prelink" name="" dev=pipefs
  ino=13115 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127209.318:36): avc:
  denied  { read write } for  pid=1467 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262348
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127209.318:37): avc:
  denied  { read write } for  pid=1468 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262346
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127209.403:38): avc:
  denied  { setattr } for  pid=1476 comm="prelink" name="" dev=pipefs
  ino=13560 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127209.500:39): avc:
  denied  { setattr } for  pid=1490 comm="prelink" name="" dev=pipefs
  ino=13665 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129452.874:6): avc:
  denied  { setattr } for  pid=1172 comm="prelink" name="" dev=pipefs
  ino=12059 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129453.408:7): avc:
  denied  { setattr } for  pid=1200 comm="prelink" name="" dev=pipefs
  ino=12193 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129454.746:8): avc:
  denied  { setattr } for  pid=1268 comm="prelink" name="" dev=pipefs
  ino=12536 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129455.443:9): avc:
  denied  { read write } for  pid=1389 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262345
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129455.452:10): avc:
  denied  { read write } for  pid=1392 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262347
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129455.496:11): avc:
  denied  { setattr } for  pid=1401 comm="prelink" name="" dev=pipefs
  ino=12947 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129455.615:12): avc:
  denied  { setattr } for  pid=1415 comm="prelink" name="" dev=pipefs
  ino=13050 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-79-141-142 ~]#
  expectation:   START  END

Comment 9 Martin Minar 2014-08-28 13:12:51 UTC
# cc1.4xlarge: failed
stage1:testcase_01_bash_history: passed
stage1:testcase_02_selinux_context: passed
stage1:testcase_03_running_services: passed
stage1:testcase_04_cloud_firstboot: passed
stage1:testcase_05_grub: passed
stage1:testcase_06_inittab: passed
stage1:testcase_07_libc6_xen_conf: passed
stage1:testcase_08_memory: passed
stage1:testcase_09_nameserver: passed
stage1:testcase_10_networking: passed
stage1:testcase_11_package_set: passed
stage1:testcase_12_passwd_group: passed
stage1:testcase_14_host_details: passed
stage1:testcase_15_rhel_version: passed
stage1:testcase_16_selinux: passed
stage1:testcase_17_shells: passed
stage1:testcase_18_sshd: passed
stage1:testcase_19_rhn_system_id: passed
stage1:testcase_20_auditd: passed
stage1:testcase_21_disk_size_format: passed
stage1:testcase_22_gpg_keys: passed
stage1:testcase_23_syslog: passed
stage1:testcase_24_yum_plugin: passed
stage1:testcase_25_uname: passed
stage1:testcase_26_verify_rpms: passed
stage1:testcase_27_yum_repos: failed
-
  result: failed
  actual repos:
  {'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-releases-beta': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-client-config-server-6-beta': True}
  expected repos: {'rhui-REGION-rhel-server-supplementary': False,
  'rhui-REGION-rhel-server-rhscl': True,
  'rhui-REGION-rhel-server-source-rhscl': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-source-supplementary': False,
  'rhui-REGION-rhel-server-debug-supplementary': False,
  'rhui-REGION-rhel-server-debug-rhscl': False,
  'rhui-REGION-client-config-server-6-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-rhel-server-releases-source': False,
  'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhui-REGION-rhel-server-releases-beta':
  True, 'rhui-REGION-rhel-server-releases-optional-source': False,
  'rhui-REGION-client-config-server-6': True,
  'rhui-REGION-rhel-server-releases': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-optional': True}
stage1:testcase_30_rhn_certificates: failed
-
  command: rpm -ql rh-amazon-rhui-client rh-amazon-rhui-client-beta
  result: passed
  value: package rh-amazon-rhui-client is not installed
  /etc/init.d/choose_beta_repo  /etc/init.d/rh-cloud-firstboot
  /etc/pki/rhui/ca.crt  /etc/pki/rhui/cdn.redhat.com-chain.crt
  /etc/pki/rhui/content-rhel6-beta.key
  /etc/pki/rhui/product/content-rhel6-beta.crt
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  /etc/pki/rhui/rhui-client-config-server-6-beta.key
  /etc/yum.repos.d/redhat-rhui-beta.repo
  /etc/yum.repos.d/redhat-rhui-client-config-beta.repo
  /etc/yum.repos.d/rhui-load-balancers.conf
  /etc/yum/pluginconf.d/amazon-id.conf
  /etc/yum/pluginconf.d/rhui-lb.conf
  /usr/lib/yum-plugins/amazon-id.py
  /usr/lib/yum-plugins/amazon-id.pyc
  /usr/lib/yum-plugins/amazon-id.pyo  /usr/lib/yum-plugins/rhui-lb.py
  /usr/lib/yum-plugins/rhui-lb.pyc  /usr/lib/yum-plugins/rhui-lb.pyo
  /usr/sbin/choose_repo.py  /usr/sbin/rh-cloud-firstboot.py
-
  command: openssl x509 -in /etc/pki/rhui/ca.crt -noout -dates
  result: passed
  value: notBefore=Aug 23 19:46:02 2011 GMT  notAfter=Nov 30 19:46:02
  2017 GMT
-
  result: failed
  comment: (/etc/pki/rhui/ca.crt).notAfter=2017-11-30 19:46:02;
  expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in /etc/pki/rhui/cdn.redhat.com-chain.crt
  -noout -dates
  result: passed
  value: notBefore=Mar 18 11:24:54 2010 GMT  notAfter=Mar 13 11:24:54
  2030 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/cdn.redhat.com-chain.crt).notAfter=2030-03-13
  11:24:54; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/content-rhel6-beta.crt -noout -dates
  result: passed
  value: notBefore=Mar 29 18:34:17 2012 GMT  notAfter=Nov 30 18:34:17
  2020 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/product/content-rhel6-beta.crt).notAfter=2020-11-30
  18:34:17; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt -noout
  -dates
  result: passed
  value: notBefore=Mar 29 18:38:42 2012 GMT  notAfter=Nov 30 18:38:42
  2020 GMT
-
  result: passed
  comment: (/etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  ).notAfter=2020-11-30 18:38:42; expecting: 2020-11-10 00:00:00
stage1:testcase_31_subscription_management: failed
-
  command: yum --disablerepo='*' -v repolist
  result: passed
  expectation: Not loading "subscription-manager" plugin
-
  command: yum --enableplugin=subscription-manager --disablerepo='*'
  -v repolist
  result: passed
  expectation: Loading "subscription-manager" plugin
-
  command: subscription-manager list
  result: failed
  actual: Config time: 0.791  Yum Version: 3.2.29  mirrorlist: https:/
  /rhui2-cds01.us-east-1.aws.ce.redhat.com/pulp/mirror/content/beta/rh
  el/rhui/server/6/6Server/x86_64/optional/source/SRPMS  mirrorlist: h
  ttps://rhui2-cds01.us-east-1.aws.ce.redhat.com/pulp/mirror/content/b
  eta/rhel/rhui/server/6/6Server/x86_64/os  mirrorlist: https://rhui2-
  cds01.us-east-1.aws.ce.redhat.com/pulp/mirror/content/beta/rhel/rhui
  /server/6/6Server/x86_64/source/SRPMS  mirrorlist: https://rhui2-cds
  01.us-east-1.aws.ce.redhat.com/pulp/mirror/content/beta/rhel/rhui/se
  rver/6/6Server/x86_64/optional/os  mirrorlist: https://rhui2-cds01.u
  s-east-1.aws.ce.redhat.com/pulp/mirror/rhui-client-config/beta/rhel/
  server/6/x86_64/os  Setting up Package Sacks  repolist: 0
  [root@ip-10-17-51-123 ~]# subscription-manager list  Unable to
  verify server's identity:   [root@ip-10-17-51-123 ~]#
  expectation: Installed Product Status
stage1:testcase_32_ephemeral: passed
stage1:testcase_33_userdata: passed
stage1:testcase_34_cpu: failed
-
  command: cat /proc/cpuinfo | grep '^processor' | wc -l
  result: failed
  actual: cat /proc/cpuinfo | grep '^processor' | wc -l  16
  [root@ip-10-17-51-123 ~]#
  expectation: 8
stage1:testcase_35_console: passed
stage1:testcase_360_ebs: passed
stage1:testcase_39_root_is_locked: passed
stage1:testcase_41_rh_amazon_rhui_client: passed
stage1:testcase_42_ipv6: passed
stage1:testcase_50_yum_package_install: passed
stage1:testcase_55_yum_group_install: passed
stage1:testcase_60_yum_update: passed
stage1:testcase_61_yum_proxy: passed
stage1:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127184.669:6): avc:
  denied  { setattr } for  pid=1549 comm="prelink" name="" dev=pipefs
  ino=14947 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127185.272:7): avc:
  denied  { setattr } for  pid=1577 comm="prelink" name="" dev=pipefs
  ino=15081 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127187.290:11): avc:
  denied  { setattr } for  pid=1609 comm="prelink" name="" dev=pipefs
  ino=15332 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127217.918:35): avc:
  denied  { setattr } for  pid=1720 comm="prelink" name="" dev=pipefs
  ino=15947 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127218.829:41): avc:
  denied  { read write } for  pid=1842 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262344
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127218.830:42): avc:
  denied  { read write } for  pid=1844 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262346
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127218.914:43): avc:
  denied  { setattr } for  pid=1858 comm="prelink" name="" dev=pipefs
  ino=16407 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127219.086:48): avc:
  denied  { setattr } for  pid=1874 comm="prelink" name="" dev=pipefs
  ino=16538 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-17-51-123 ~]#
  expectation:   START  END
stage1:testcase_99_reboot: passed
stage2:testcase_08_memory: passed
stage2:testcase_25_uname: passed
stage2:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127184.669:6): avc:
  denied  { setattr } for  pid=1549 comm="prelink" name="" dev=pipefs
  ino=14947 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127185.272:7): avc:
  denied  { setattr } for  pid=1577 comm="prelink" name="" dev=pipefs
  ino=15081 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127187.290:11): avc:
  denied  { setattr } for  pid=1609 comm="prelink" name="" dev=pipefs
  ino=15332 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127217.918:35): avc:
  denied  { setattr } for  pid=1720 comm="prelink" name="" dev=pipefs
  ino=15947 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127218.829:41): avc:
  denied  { read write } for  pid=1842 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262344
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127218.830:42): avc:
  denied  { read write } for  pid=1844 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262346
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127218.914:43): avc:
  denied  { setattr } for  pid=1858 comm="prelink" name="" dev=pipefs
  ino=16407 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127219.086:48): avc:
  denied  { setattr } for  pid=1874 comm="prelink" name="" dev=pipefs
  ino=16538 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129664.015:6): avc:
  denied  { setattr } for  pid=1547 comm="prelink" name="" dev=pipefs
  ino=14878 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129664.709:7): avc:
  denied  { setattr } for  pid=1575 comm="prelink" name="" dev=pipefs
  ino=15012 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129666.480:8): avc:
  denied  { setattr } for  pid=1643 comm="prelink" name="" dev=pipefs
  ino=15355 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129667.495:13): avc:
  denied  { read write } for  pid=1765 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262346
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129667.496:14): avc:
  denied  { read write } for  pid=1767 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262344
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129667.576:15): avc:
  denied  { setattr } for  pid=1779 comm="prelink" name="" dev=pipefs
  ino=15796 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129667.770:16): avc:
  denied  { setattr } for  pid=1793 comm="prelink" name="" dev=pipefs
  ino=15906 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-17-51-123 ~]#
  expectation:   START  END

Comment 10 mkovacik 2014-11-28 13:28:44 UTC
closing irrelevant validation bugs


Note You need to log in before you can comment on or make changes to this bug.