Bug 1134927 - ami-3400d95c 6.6 x86_64 access us-east-1
Summary: ami-3400d95c 6.6 x86_64 access us-east-1
Keywords:
Status: CLOSED NOTABUG
Alias: None
Product: Cloud Image Validation
Classification: Red Hat
Component: images
Version: RHEL6.6
Hardware: x86_64
OS: Linux
unspecified
unspecified
Target Milestone: ---
Assignee: mkovacik
QA Contact: mkovacik
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2014-08-28 13:12 UTC by Martin Minar
Modified: 2016-07-04 00:58 UTC (History)
1 user (show)

Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Clone Of:
Environment:
Last Closed: 2014-11-28 13:28:30 UTC
Target Upstream Version:
Embargoed:


Attachments (Terms of Use)
ami-3400d95c-log.yaml (451.78 KB, text/yaml)
2014-08-28 13:12 UTC, Martin Minar
no flags Details

Description Martin Minar 2014-08-28 13:12:30 UTC

Comment 1 Martin Minar 2014-08-28 13:12:37 UTC
Created attachment 931957 [details]
ami-3400d95c-log.yaml

Comment 2 Martin Minar 2014-08-28 13:12:39 UTC
# m1.large: failed
stage1:testcase_01_bash_history: passed
stage1:testcase_02_selinux_context: passed
stage1:testcase_03_running_services: passed
stage1:testcase_04_cloud_firstboot: passed
stage1:testcase_05_grub: passed
stage1:testcase_06_inittab: passed
stage1:testcase_07_libc6_xen_conf: passed
stage1:testcase_08_memory: passed
stage1:testcase_09_nameserver: passed
stage1:testcase_10_networking: passed
stage1:testcase_11_package_set: passed
stage1:testcase_12_passwd_group: passed
stage1:testcase_13_resize2fs: passed
stage1:testcase_14_host_details: passed
stage1:testcase_15_rhel_version: passed
stage1:testcase_16_selinux: passed
stage1:testcase_17_shells: passed
stage1:testcase_18_sshd: passed
stage1:testcase_19_rhn_system_id: passed
stage1:testcase_20_auditd: passed
stage1:testcase_21_disk_size_format: passed
stage1:testcase_22_gpg_keys: passed
stage1:testcase_23_syslog: passed
stage1:testcase_24_yum_plugin: passed
stage1:testcase_25_uname: passed
stage1:testcase_26_verify_rpms: passed
stage1:testcase_27_yum_repos: failed
-
  result: failed
  actual repos:
  {'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-releases-beta': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-client-config-server-6-beta': True}
  expected repos: {'rhui-REGION-rhel-server-supplementary': False,
  'rhui-REGION-rhel-server-rhscl': True,
  'rhui-REGION-rhel-server-source-rhscl': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-source-supplementary': False,
  'rhui-REGION-rhel-server-debug-supplementary': False,
  'rhui-REGION-rhel-server-debug-rhscl': False,
  'rhui-REGION-client-config-server-6-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-rhel-server-releases-source': False,
  'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhui-REGION-rhel-server-releases-beta':
  True, 'rhui-REGION-rhel-server-releases-optional-source': False,
  'rhui-REGION-client-config-server-6': True,
  'rhui-REGION-rhel-server-releases': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-optional': True}
stage1:testcase_30_rhn_certificates: failed
-
  command: rpm -ql rh-amazon-rhui-client rh-amazon-rhui-client-beta
  result: passed
  value: package rh-amazon-rhui-client is not installed
  /etc/init.d/choose_beta_repo  /etc/init.d/rh-cloud-firstboot
  /etc/pki/rhui/ca.crt  /etc/pki/rhui/cdn.redhat.com-chain.crt
  /etc/pki/rhui/content-rhel6-beta.key
  /etc/pki/rhui/product/content-rhel6-beta.crt
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  /etc/pki/rhui/rhui-client-config-server-6-beta.key
  /etc/yum.repos.d/redhat-rhui-beta.repo
  /etc/yum.repos.d/redhat-rhui-client-config-beta.repo
  /etc/yum.repos.d/rhui-load-balancers.conf
  /etc/yum/pluginconf.d/amazon-id.conf
  /etc/yum/pluginconf.d/rhui-lb.conf
  /usr/lib/yum-plugins/amazon-id.py
  /usr/lib/yum-plugins/amazon-id.pyc
  /usr/lib/yum-plugins/amazon-id.pyo  /usr/lib/yum-plugins/rhui-lb.py
  /usr/lib/yum-plugins/rhui-lb.pyc  /usr/lib/yum-plugins/rhui-lb.pyo
  /usr/sbin/choose_repo.py  /usr/sbin/rh-cloud-firstboot.py
-
  command: openssl x509 -in /etc/pki/rhui/ca.crt -noout -dates
  result: passed
  value: notBefore=Aug 23 19:46:02 2011 GMT  notAfter=Nov 30 19:46:02
  2017 GMT
-
  result: failed
  comment: (/etc/pki/rhui/ca.crt).notAfter=2017-11-30 19:46:02;
  expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in /etc/pki/rhui/cdn.redhat.com-chain.crt
  -noout -dates
  result: passed
  value: notBefore=Mar 18 11:24:54 2010 GMT  notAfter=Mar 13 11:24:54
  2030 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/cdn.redhat.com-chain.crt).notAfter=2030-03-13
  11:24:54; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/content-rhel6-beta.crt -noout -dates
  result: passed
  value: notBefore=Mar 29 18:34:17 2012 GMT  notAfter=Nov 30 18:34:17
  2020 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/product/content-rhel6-beta.crt).notAfter=2020-11-30
  18:34:17; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt -noout
  -dates
  result: passed
  value: notBefore=Mar 29 18:38:42 2012 GMT  notAfter=Nov 30 18:38:42
  2020 GMT
-
  result: passed
  comment: (/etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  ).notAfter=2020-11-30 18:38:42; expecting: 2020-11-10 00:00:00
stage1:testcase_31_subscription_management: passed
stage1:testcase_32_ephemeral: failed
-
  command: ls -la /sbin/mkfs.vfat 2> /dev/null | wc -l
  result: passed
  value: 1
-
  command: fdisk -l /dev/xvdj | grep '^Disk'
  result: failed
  actual: 1
-
  command: grep '/dev/xvdj ' /proc/mounts  | wc -l
  result: passed
  value: 0
-
  command: mkfs.vfat -I /dev/xvdj
  result: failed
  actual: 1
stage1:testcase_33_userdata: passed
stage1:testcase_34_cpu: passed
stage1:testcase_360_ebs: passed
stage1:testcase_39_root_is_locked: passed
stage1:testcase_41_rh_amazon_rhui_client: passed
stage1:testcase_42_ipv6: passed
stage1:testcase_50_yum_package_install: passed
stage1:testcase_55_yum_group_install: passed
stage1:testcase_60_yum_update: passed
stage1:testcase_61_yum_proxy: passed
stage1:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127180.781:6): avc:
  denied  { setattr } for  pid=1054 comm="prelink" name="" dev=pipefs
  ino=11527 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127182.319:7): avc:
  denied  { setattr } for  pid=1082 comm="prelink" name="" dev=pipefs
  ino=11661 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127205.270:11): avc:
  denied  { setattr } for  pid=1116 comm="prelink" name="" dev=pipefs
  ino=11921 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127234.499:35): avc:
  denied  { setattr } for  pid=1227 comm="prelink" name="" dev=pipefs
  ino=12747 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127236.524:36): avc:
  denied  { read write } for  pid=1339 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127236.526:37): avc:
  denied  { read write } for  pid=1342 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127236.786:38): avc:
  denied  { setattr } for  pid=1364 comm="prelink" name="" dev=pipefs
  ino=13192 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127237.138:39): avc:
  denied  { setattr } for  pid=1378 comm="prelink" name="" dev=pipefs
  ino=13288 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-72-18-33 ~]#
  expectation:   START  END
stage1:testcase_99_reboot: passed
stage2:testcase_08_memory: passed
stage2:testcase_25_uname: passed
stage2:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127180.781:6): avc:
  denied  { setattr } for  pid=1054 comm="prelink" name="" dev=pipefs
  ino=11527 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127182.319:7): avc:
  denied  { setattr } for  pid=1082 comm="prelink" name="" dev=pipefs
  ino=11661 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127205.270:11): avc:
  denied  { setattr } for  pid=1116 comm="prelink" name="" dev=pipefs
  ino=11921 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127234.499:35): avc:
  denied  { setattr } for  pid=1227 comm="prelink" name="" dev=pipefs
  ino=12747 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127236.524:36): avc:
  denied  { read write } for  pid=1339 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127236.526:37): avc:
  denied  { read write } for  pid=1342 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127236.786:38): avc:
  denied  { setattr } for  pid=1364 comm="prelink" name="" dev=pipefs
  ino=13192 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127237.138:39): avc:
  denied  { setattr } for  pid=1378 comm="prelink" name="" dev=pipefs
  ino=13288 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128836.351:6): avc:
  denied  { setattr } for  pid=1060 comm="prelink" name="" dev=pipefs
  ino=11759 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128837.759:7): avc:
  denied  { setattr } for  pid=1087 comm="prelink" name="" dev=pipefs
  ino=11887 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128841.234:8): avc:
  denied  { setattr } for  pid=1156 comm="prelink" name="" dev=pipefs
  ino=12233 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128842.893:9): avc:
  denied  { read write } for  pid=1263 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128842.908:10): avc:
  denied  { read write } for  pid=1266 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128843.233:15): avc:
  denied  { setattr } for  pid=1292 comm="prelink" name="" dev=pipefs
  ino=12674 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128843.671:16): avc:
  denied  { setattr } for  pid=1306 comm="prelink" name="" dev=pipefs
  ino=12768 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-72-18-33 ~]#
  expectation:   START  END

Comment 3 Martin Minar 2014-08-28 13:12:41 UTC
# c1.xlarge: failed
stage1:testcase_01_bash_history: passed
stage1:testcase_02_selinux_context: passed
stage1:testcase_03_running_services: passed
stage1:testcase_04_cloud_firstboot: passed
stage1:testcase_05_grub: passed
stage1:testcase_06_inittab: passed
stage1:testcase_07_libc6_xen_conf: passed
stage1:testcase_08_memory: failed
-
  command: grep --color=none 'MemTotal:' /proc/meminfo
  match: .*\r\nMemTotal:\s*([0-9]+)
  result: passed
  value: ['6997860']
-
  command: [ 6997860 -gt 6997900 ]
  result: failed
  actual: 1
stage1:testcase_09_nameserver: passed
stage1:testcase_10_networking: passed
stage1:testcase_11_package_set: passed
stage1:testcase_12_passwd_group: passed
stage1:testcase_13_resize2fs: passed
stage1:testcase_14_host_details: passed
stage1:testcase_15_rhel_version: passed
stage1:testcase_16_selinux: passed
stage1:testcase_17_shells: passed
stage1:testcase_18_sshd: passed
stage1:testcase_19_rhn_system_id: passed
stage1:testcase_20_auditd: passed
stage1:testcase_21_disk_size_format: passed
stage1:testcase_22_gpg_keys: passed
stage1:testcase_23_syslog: passed
stage1:testcase_24_yum_plugin: passed
stage1:testcase_25_uname: passed
stage1:testcase_26_verify_rpms: passed
stage1:testcase_27_yum_repos: failed
-
  result: failed
  actual repos:
  {'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-releases-beta': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-client-config-server-6-beta': True}
  expected repos: {'rhui-REGION-rhel-server-supplementary': False,
  'rhui-REGION-rhel-server-rhscl': True,
  'rhui-REGION-rhel-server-source-rhscl': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-source-supplementary': False,
  'rhui-REGION-rhel-server-debug-supplementary': False,
  'rhui-REGION-rhel-server-debug-rhscl': False,
  'rhui-REGION-client-config-server-6-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-rhel-server-releases-source': False,
  'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhui-REGION-rhel-server-releases-beta':
  True, 'rhui-REGION-rhel-server-releases-optional-source': False,
  'rhui-REGION-client-config-server-6': True,
  'rhui-REGION-rhel-server-releases': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-optional': True}
stage1:testcase_30_rhn_certificates: failed
-
  command: rpm -ql rh-amazon-rhui-client rh-amazon-rhui-client-beta
  result: passed
  value: package rh-amazon-rhui-client is not installed
  /etc/init.d/choose_beta_repo  /etc/init.d/rh-cloud-firstboot
  /etc/pki/rhui/ca.crt  /etc/pki/rhui/cdn.redhat.com-chain.crt
  /etc/pki/rhui/content-rhel6-beta.key
  /etc/pki/rhui/product/content-rhel6-beta.crt
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  /etc/pki/rhui/rhui-client-config-server-6-beta.key
  /etc/yum.repos.d/redhat-rhui-beta.repo
  /etc/yum.repos.d/redhat-rhui-client-config-beta.repo
  /etc/yum.repos.d/rhui-load-balancers.conf
  /etc/yum/pluginconf.d/amazon-id.conf
  /etc/yum/pluginconf.d/rhui-lb.conf
  /usr/lib/yum-plugins/amazon-id.py
  /usr/lib/yum-plugins/amazon-id.pyc
  /usr/lib/yum-plugins/amazon-id.pyo  /usr/lib/yum-plugins/rhui-lb.py
  /usr/lib/yum-plugins/rhui-lb.pyc  /usr/lib/yum-plugins/rhui-lb.pyo
  /usr/sbin/choose_repo.py  /usr/sbin/rh-cloud-firstboot.py
-
  command: openssl x509 -in /etc/pki/rhui/ca.crt -noout -dates
  result: passed
  value: notBefore=Aug 23 19:46:02 2011 GMT  notAfter=Nov 30 19:46:02
  2017 GMT
-
  result: failed
  comment: (/etc/pki/rhui/ca.crt).notAfter=2017-11-30 19:46:02;
  expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in /etc/pki/rhui/cdn.redhat.com-chain.crt
  -noout -dates
  result: passed
  value: notBefore=Mar 18 11:24:54 2010 GMT  notAfter=Mar 13 11:24:54
  2030 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/cdn.redhat.com-chain.crt).notAfter=2030-03-13
  11:24:54; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/content-rhel6-beta.crt -noout -dates
  result: passed
  value: notBefore=Mar 29 18:34:17 2012 GMT  notAfter=Nov 30 18:34:17
  2020 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/product/content-rhel6-beta.crt).notAfter=2020-11-30
  18:34:17; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt -noout
  -dates
  result: passed
  value: notBefore=Mar 29 18:38:42 2012 GMT  notAfter=Nov 30 18:38:42
  2020 GMT
-
  result: passed
  comment: (/etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  ).notAfter=2020-11-30 18:38:42; expecting: 2020-11-10 00:00:00
stage1:testcase_31_subscription_management: passed
stage1:testcase_32_ephemeral: failed
-
  command: ls -la /sbin/mkfs.vfat 2> /dev/null | wc -l
  result: passed
  value: 1
-
  command: fdisk -l /dev/xvdj | grep '^Disk'
  result: failed
  actual: 1
-
  command: grep '/dev/xvdj ' /proc/mounts  | wc -l
  result: passed
  value: 0
-
  command: mkfs.vfat -I /dev/xvdj
  result: failed
  actual: 1
stage1:testcase_33_userdata: passed
stage1:testcase_34_cpu: passed
stage1:testcase_360_ebs: passed
stage1:testcase_39_root_is_locked: passed
stage1:testcase_41_rh_amazon_rhui_client: passed
stage1:testcase_42_ipv6: passed
stage1:testcase_50_yum_package_install: passed
stage1:testcase_55_yum_group_install: passed
stage1:testcase_60_yum_update: passed
stage1:testcase_61_yum_proxy: passed
stage1:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127178.061:6): avc:
  denied  { setattr } for  pid=1243 comm="prelink" name="" dev=pipefs
  ino=12462 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127179.317:7): avc:
  denied  { setattr } for  pid=1271 comm="prelink" name="" dev=pipefs
  ino=12596 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127189.815:11): avc:
  denied  { setattr } for  pid=1305 comm="prelink" name="" dev=pipefs
  ino=12855 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127215.214:35): avc:
  denied  { setattr } for  pid=1416 comm="prelink" name="" dev=pipefs
  ino=13684 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127216.702:36): avc:
  denied  { read write } for  pid=1533 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127216.706:37): avc:
  denied  { read write } for  pid=1535 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127216.866:38): avc:
  denied  { setattr } for  pid=1553 comm="prelink" name="" dev=pipefs
  ino=14129 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127217.119:39): avc:
  denied  { setattr } for  pid=1567 comm="prelink" name="" dev=pipefs
  ino=14228 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-170-3-15 ~]#
  expectation:   START  END
stage1:testcase_99_reboot: passed
stage2:testcase_08_memory: failed
-
  command: grep --color=none 'MemTotal:' /proc/meminfo
  match: .*\r\nMemTotal:\s*([0-9]+)
  result: passed
  value: ['6997860']
-
  command: [ 6997860 -gt 6997900 ]
  result: failed
  actual: 1
stage2:testcase_25_uname: passed
stage2:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127178.061:6): avc:
  denied  { setattr } for  pid=1243 comm="prelink" name="" dev=pipefs
  ino=12462 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127179.317:7): avc:
  denied  { setattr } for  pid=1271 comm="prelink" name="" dev=pipefs
  ino=12596 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127189.815:11): avc:
  denied  { setattr } for  pid=1305 comm="prelink" name="" dev=pipefs
  ino=12855 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127215.214:35): avc:
  denied  { setattr } for  pid=1416 comm="prelink" name="" dev=pipefs
  ino=13684 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127216.702:36): avc:
  denied  { read write } for  pid=1533 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127216.706:37): avc:
  denied  { read write } for  pid=1535 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127216.866:38): avc:
  denied  { setattr } for  pid=1553 comm="prelink" name="" dev=pipefs
  ino=14129 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127217.119:39): avc:
  denied  { setattr } for  pid=1567 comm="prelink" name="" dev=pipefs
  ino=14228 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128773.260:6): avc:
  denied  { setattr } for  pid=1244 comm="prelink" name="" dev=pipefs
  ino=12724 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128774.517:7): avc:
  denied  { setattr } for  pid=1271 comm="prelink" name="" dev=pipefs
  ino=12852 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128777.908:8): avc:
  denied  { setattr } for  pid=1340 comm="prelink" name="" dev=pipefs
  ino=13197 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128779.478:13): avc:
  denied  { read write } for  pid=1449 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128779.479:14): avc:
  denied  { read write } for  pid=1450 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128779.805:15): avc:
  denied  { setattr } for  pid=1476 comm="prelink" name="" dev=pipefs
  ino=13644 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128780.124:23): avc:
  denied  { setattr } for  pid=1492 comm="prelink" name="" dev=pipefs
  ino=13766 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-170-3-15 ~]#
  expectation:   START  END

Comment 4 Martin Minar 2014-08-28 13:12:43 UTC
# m1.small: failed
stage1:testcase_01_bash_history: passed
stage1:testcase_02_selinux_context: passed
stage1:testcase_03_running_services: passed
stage1:testcase_04_cloud_firstboot: passed
stage1:testcase_05_grub: passed
stage1:testcase_06_inittab: passed
stage1:testcase_07_libc6_xen_conf: passed
stage1:testcase_08_memory: passed
stage1:testcase_09_nameserver: passed
stage1:testcase_10_networking: passed
stage1:testcase_11_package_set: passed
stage1:testcase_12_passwd_group: passed
stage1:testcase_13_resize2fs: passed
stage1:testcase_14_host_details: passed
stage1:testcase_15_rhel_version: passed
stage1:testcase_16_selinux: passed
stage1:testcase_17_shells: passed
stage1:testcase_18_sshd: passed
stage1:testcase_19_rhn_system_id: passed
stage1:testcase_20_auditd: passed
stage1:testcase_21_disk_size_format: passed
stage1:testcase_22_gpg_keys: passed
stage1:testcase_23_syslog: passed
stage1:testcase_24_yum_plugin: passed
stage1:testcase_25_uname: passed
stage1:testcase_26_verify_rpms: passed
stage1:testcase_27_yum_repos: failed
-
  result: failed
  actual repos:
  {'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-releases-beta': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-client-config-server-6-beta': True}
  expected repos: {'rhui-REGION-rhel-server-supplementary': False,
  'rhui-REGION-rhel-server-rhscl': True,
  'rhui-REGION-rhel-server-source-rhscl': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-source-supplementary': False,
  'rhui-REGION-rhel-server-debug-supplementary': False,
  'rhui-REGION-rhel-server-debug-rhscl': False,
  'rhui-REGION-client-config-server-6-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-rhel-server-releases-source': False,
  'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhui-REGION-rhel-server-releases-beta':
  True, 'rhui-REGION-rhel-server-releases-optional-source': False,
  'rhui-REGION-client-config-server-6': True,
  'rhui-REGION-rhel-server-releases': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-optional': True}
stage1:testcase_30_rhn_certificates: failed
-
  command: rpm -ql rh-amazon-rhui-client rh-amazon-rhui-client-beta
  result: passed
  value: package rh-amazon-rhui-client is not installed
  /etc/init.d/choose_beta_repo  /etc/init.d/rh-cloud-firstboot
  /etc/pki/rhui/ca.crt  /etc/pki/rhui/cdn.redhat.com-chain.crt
  /etc/pki/rhui/content-rhel6-beta.key
  /etc/pki/rhui/product/content-rhel6-beta.crt
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  /etc/pki/rhui/rhui-client-config-server-6-beta.key
  /etc/yum.repos.d/redhat-rhui-beta.repo
  /etc/yum.repos.d/redhat-rhui-client-config-beta.repo
  /etc/yum.repos.d/rhui-load-balancers.conf
  /etc/yum/pluginconf.d/amazon-id.conf
  /etc/yum/pluginconf.d/rhui-lb.conf
  /usr/lib/yum-plugins/amazon-id.py
  /usr/lib/yum-plugins/amazon-id.pyc
  /usr/lib/yum-plugins/amazon-id.pyo  /usr/lib/yum-plugins/rhui-lb.py
  /usr/lib/yum-plugins/rhui-lb.pyc  /usr/lib/yum-plugins/rhui-lb.pyo
  /usr/sbin/choose_repo.py  /usr/sbin/rh-cloud-firstboot.py
-
  command: openssl x509 -in /etc/pki/rhui/ca.crt -noout -dates
  result: passed
  value: notBefore=Aug 23 19:46:02 2011 GMT  notAfter=Nov 30 19:46:02
  2017 GMT
-
  result: failed
  comment: (/etc/pki/rhui/ca.crt).notAfter=2017-11-30 19:46:02;
  expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in /etc/pki/rhui/cdn.redhat.com-chain.crt
  -noout -dates
  result: passed
  value: notBefore=Mar 18 11:24:54 2010 GMT  notAfter=Mar 13 11:24:54
  2030 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/cdn.redhat.com-chain.crt).notAfter=2030-03-13
  11:24:54; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/content-rhel6-beta.crt -noout -dates
  result: passed
  value: notBefore=Mar 29 18:34:17 2012 GMT  notAfter=Nov 30 18:34:17
  2020 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/product/content-rhel6-beta.crt).notAfter=2020-11-30
  18:34:17; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt -noout
  -dates
  result: passed
  value: notBefore=Mar 29 18:38:42 2012 GMT  notAfter=Nov 30 18:38:42
  2020 GMT
-
  result: passed
  comment: (/etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  ).notAfter=2020-11-30 18:38:42; expecting: 2020-11-10 00:00:00
stage1:testcase_31_subscription_management: passed
stage1:testcase_32_ephemeral: failed
-
  command: ls -la /sbin/mkfs.vfat 2> /dev/null | wc -l
  result: passed
  value: 1
-
  command: fdisk -l /dev/xvdj | grep '^Disk'
  result: failed
  actual: 1
-
  command: grep '/dev/xvdj ' /proc/mounts  | wc -l
  result: passed
  value: 0
-
  command: mkfs.vfat -I /dev/xvdj
  result: failed
  actual: 1
stage1:testcase_33_userdata: passed
stage1:testcase_34_cpu: passed
stage1:testcase_360_ebs: passed
stage1:testcase_39_root_is_locked: passed
stage1:testcase_41_rh_amazon_rhui_client: passed
stage1:testcase_42_ipv6: passed
stage1:testcase_50_yum_package_install: passed
stage1:testcase_55_yum_group_install: passed
stage1:testcase_60_yum_update: passed
stage1:testcase_61_yum_proxy: passed
stage1:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127191.097:6): avc:
  denied  { setattr } for  pid=1030 comm="prelink" name="" dev=pipefs
  ino=11413 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127193.842:7): avc:
  denied  { setattr } for  pid=1059 comm="prelink" name="" dev=pipefs
  ino=11552 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127207.081:11): avc:
  denied  { setattr } for  pid=1094 comm="prelink" name="" dev=pipefs
  ino=11819 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127250.415:111):
  avc:  denied  { setattr } for  pid=1277 comm="prelink" name=""
  dev=pipefs ino=13123 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127255.265:137):
  avc:  denied  { read write } for  pid=1413 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262290
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127255.303:138):
  avc:  denied  { read write } for  pid=1414 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262288
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127256.561:145):
  avc:  denied  { setattr } for  pid=1442 comm="prelink" name=""
  dev=pipefs ino=13765
  scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127258.102:148):
  avc:  denied  { setattr } for  pid=1480 comm="prelink" name=""
  dev=pipefs ino=13935
  scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-140-154-195 ~]#
  expectation:   START  END
stage1:testcase_99_reboot: passed
stage2:testcase_08_memory: passed
stage2:testcase_25_uname: passed
stage2:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127191.097:6): avc:
  denied  { setattr } for  pid=1030 comm="prelink" name="" dev=pipefs
  ino=11413 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127193.842:7): avc:
  denied  { setattr } for  pid=1059 comm="prelink" name="" dev=pipefs
  ino=11552 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127207.081:11): avc:
  denied  { setattr } for  pid=1094 comm="prelink" name="" dev=pipefs
  ino=11819 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127250.415:111):
  avc:  denied  { setattr } for  pid=1277 comm="prelink" name=""
  dev=pipefs ino=13123 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127255.265:137):
  avc:  denied  { read write } for  pid=1413 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262290
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127255.303:138):
  avc:  denied  { read write } for  pid=1414 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262288
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127256.561:145):
  avc:  denied  { setattr } for  pid=1442 comm="prelink" name=""
  dev=pipefs ino=13765
  scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127258.102:148):
  avc:  denied  { setattr } for  pid=1480 comm="prelink" name=""
  dev=pipefs ino=13935
  scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128882.111:6): avc:
  denied  { setattr } for  pid=1037 comm="prelink" name="" dev=pipefs
  ino=11659 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128884.637:7): avc:
  denied  { setattr } for  pid=1065 comm="prelink" name="" dev=pipefs
  ino=11793 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128890.393:8): avc:
  denied  { setattr } for  pid=1135 comm="prelink" name="" dev=pipefs
  ino=12147 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128894.470:27): avc:
  denied  { read write } for  pid=1260 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262288
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128894.601:28): avc:
  denied  { read write } for  pid=1261 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262290
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128895.213:29): avc:
  denied  { setattr } for  pid=1293 comm="prelink" name="" dev=pipefs
  ino=12692 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128896.357:30): avc:
  denied  { setattr } for  pid=1308 comm="prelink" name="" dev=pipefs
  ino=12792 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-140-154-195 ~]#
  expectation:   START  END

Comment 5 Martin Minar 2014-08-28 13:12:45 UTC
# m1.xlarge: failed
stage1:testcase_01_bash_history: passed
stage1:testcase_02_selinux_context: passed
stage1:testcase_03_running_services: passed
stage1:testcase_04_cloud_firstboot: passed
stage1:testcase_05_grub: passed
stage1:testcase_06_inittab: passed
stage1:testcase_07_libc6_xen_conf: passed
stage1:testcase_08_memory: passed
stage1:testcase_09_nameserver: passed
stage1:testcase_10_networking: passed
stage1:testcase_11_package_set: passed
stage1:testcase_12_passwd_group: passed
stage1:testcase_13_resize2fs: passed
stage1:testcase_14_host_details: passed
stage1:testcase_15_rhel_version: passed
stage1:testcase_16_selinux: passed
stage1:testcase_17_shells: passed
stage1:testcase_18_sshd: passed
stage1:testcase_19_rhn_system_id: passed
stage1:testcase_20_auditd: passed
stage1:testcase_21_disk_size_format: passed
stage1:testcase_22_gpg_keys: passed
stage1:testcase_23_syslog: passed
stage1:testcase_24_yum_plugin: passed
stage1:testcase_25_uname: passed
stage1:testcase_26_verify_rpms: passed
stage1:testcase_27_yum_repos: failed
-
  result: failed
  actual repos:
  {'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-releases-beta': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-client-config-server-6-beta': True}
  expected repos: {'rhui-REGION-rhel-server-supplementary': False,
  'rhui-REGION-rhel-server-rhscl': True,
  'rhui-REGION-rhel-server-source-rhscl': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-source-supplementary': False,
  'rhui-REGION-rhel-server-debug-supplementary': False,
  'rhui-REGION-rhel-server-debug-rhscl': False,
  'rhui-REGION-client-config-server-6-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-rhel-server-releases-source': False,
  'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhui-REGION-rhel-server-releases-beta':
  True, 'rhui-REGION-rhel-server-releases-optional-source': False,
  'rhui-REGION-client-config-server-6': True,
  'rhui-REGION-rhel-server-releases': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-optional': True}
stage1:testcase_30_rhn_certificates: failed
-
  command: rpm -ql rh-amazon-rhui-client rh-amazon-rhui-client-beta
  result: passed
  value: package rh-amazon-rhui-client is not installed
  /etc/init.d/choose_beta_repo  /etc/init.d/rh-cloud-firstboot
  /etc/pki/rhui/ca.crt  /etc/pki/rhui/cdn.redhat.com-chain.crt
  /etc/pki/rhui/content-rhel6-beta.key
  /etc/pki/rhui/product/content-rhel6-beta.crt
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  /etc/pki/rhui/rhui-client-config-server-6-beta.key
  /etc/yum.repos.d/redhat-rhui-beta.repo
  /etc/yum.repos.d/redhat-rhui-client-config-beta.repo
  /etc/yum.repos.d/rhui-load-balancers.conf
  /etc/yum/pluginconf.d/amazon-id.conf
  /etc/yum/pluginconf.d/rhui-lb.conf
  /usr/lib/yum-plugins/amazon-id.py
  /usr/lib/yum-plugins/amazon-id.pyc
  /usr/lib/yum-plugins/amazon-id.pyo  /usr/lib/yum-plugins/rhui-lb.py
  /usr/lib/yum-plugins/rhui-lb.pyc  /usr/lib/yum-plugins/rhui-lb.pyo
  /usr/sbin/choose_repo.py  /usr/sbin/rh-cloud-firstboot.py
-
  command: openssl x509 -in /etc/pki/rhui/ca.crt -noout -dates
  result: passed
  value: notBefore=Aug 23 19:46:02 2011 GMT  notAfter=Nov 30 19:46:02
  2017 GMT
-
  result: failed
  comment: (/etc/pki/rhui/ca.crt).notAfter=2017-11-30 19:46:02;
  expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in /etc/pki/rhui/cdn.redhat.com-chain.crt
  -noout -dates
  result: passed
  value: notBefore=Mar 18 11:24:54 2010 GMT  notAfter=Mar 13 11:24:54
  2030 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/cdn.redhat.com-chain.crt).notAfter=2030-03-13
  11:24:54; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/content-rhel6-beta.crt -noout -dates
  result: passed
  value: notBefore=Mar 29 18:34:17 2012 GMT  notAfter=Nov 30 18:34:17
  2020 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/product/content-rhel6-beta.crt).notAfter=2020-11-30
  18:34:17; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt -noout
  -dates
  result: passed
  value: notBefore=Mar 29 18:38:42 2012 GMT  notAfter=Nov 30 18:38:42
  2020 GMT
-
  result: passed
  comment: (/etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  ).notAfter=2020-11-30 18:38:42; expecting: 2020-11-10 00:00:00
stage1:testcase_31_subscription_management: passed
stage1:testcase_32_ephemeral: failed
-
  command: ls -la /sbin/mkfs.vfat 2> /dev/null | wc -l
  result: passed
  value: 1
-
  command: fdisk -l /dev/xvdj | grep '^Disk'
  result: failed
  actual: 1
-
  command: grep '/dev/xvdj ' /proc/mounts  | wc -l
  result: passed
  value: 0
-
  command: mkfs.vfat -I /dev/xvdj
  result: failed
  actual: 1
stage1:testcase_33_userdata: passed
stage1:testcase_34_cpu: passed
stage1:testcase_360_ebs: passed
stage1:testcase_39_root_is_locked: passed
stage1:testcase_41_rh_amazon_rhui_client: passed
stage1:testcase_42_ipv6: passed
stage1:testcase_50_yum_package_install: passed
stage1:testcase_55_yum_group_install: passed
stage1:testcase_60_yum_update: passed
stage1:testcase_61_yum_proxy: passed
stage1:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127182.839:6): avc:
  denied  { setattr } for  pid=1123 comm="prelink" name="" dev=pipefs
  ino=11854 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127184.162:7): avc:
  denied  { setattr } for  pid=1151 comm="prelink" name="" dev=pipefs
  ino=11988 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127195.874:11): avc:
  denied  { setattr } for  pid=1185 comm="prelink" name="" dev=pipefs
  ino=12248 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127219.943:35): avc:
  denied  { setattr } for  pid=1296 comm="prelink" name="" dev=pipefs
  ino=13077 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127221.573:36): avc:
  denied  { read write } for  pid=1413 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127221.579:37): avc:
  denied  { read write } for  pid=1415 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127221.749:38): avc:
  denied  { setattr } for  pid=1433 comm="prelink" name="" dev=pipefs
  ino=13522 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127221.988:39): avc:
  denied  { setattr } for  pid=1447 comm="prelink" name="" dev=pipefs
  ino=13621 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-170-13-17 ~]#
  expectation:   START  END
stage1:testcase_99_reboot: passed
stage2:testcase_08_memory: passed
stage2:testcase_25_uname: passed
stage2:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127182.839:6): avc:
  denied  { setattr } for  pid=1123 comm="prelink" name="" dev=pipefs
  ino=11854 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127184.162:7): avc:
  denied  { setattr } for  pid=1151 comm="prelink" name="" dev=pipefs
  ino=11988 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127195.874:11): avc:
  denied  { setattr } for  pid=1185 comm="prelink" name="" dev=pipefs
  ino=12248 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127219.943:35): avc:
  denied  { setattr } for  pid=1296 comm="prelink" name="" dev=pipefs
  ino=13077 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127221.573:36): avc:
  denied  { read write } for  pid=1413 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127221.579:37): avc:
  denied  { read write } for  pid=1415 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127221.749:38): avc:
  denied  { setattr } for  pid=1433 comm="prelink" name="" dev=pipefs
  ino=13522 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127221.988:39): avc:
  denied  { setattr } for  pid=1447 comm="prelink" name="" dev=pipefs
  ino=13621 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128775.712:6): avc:
  denied  { setattr } for  pid=1126 comm="prelink" name="" dev=pipefs
  ino=12092 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128776.918:7): avc:
  denied  { setattr } for  pid=1153 comm="prelink" name="" dev=pipefs
  ino=12220 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128779.970:8): avc:
  denied  { setattr } for  pid=1222 comm="prelink" name="" dev=pipefs
  ino=12566 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128781.526:9): avc:
  denied  { read write } for  pid=1337 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128781.526:10): avc:
  denied  { read write } for  pid=1336 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128781.722:13): avc:
  denied  { setattr } for  pid=1358 comm="prelink" name="" dev=pipefs
  ino=13004 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128781.970:16): avc:
  denied  { setattr } for  pid=1372 comm="prelink" name="" dev=pipefs
  ino=13104 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-170-13-17 ~]#
  expectation:   START  END

Comment 6 Martin Minar 2014-08-28 13:12:47 UTC
# m2.xlarge: failed
stage1:testcase_01_bash_history: passed
stage1:testcase_02_selinux_context: passed
stage1:testcase_03_running_services: passed
stage1:testcase_04_cloud_firstboot: passed
stage1:testcase_05_grub: passed
stage1:testcase_06_inittab: passed
stage1:testcase_07_libc6_xen_conf: passed
stage1:testcase_08_memory: passed
stage1:testcase_09_nameserver: passed
stage1:testcase_10_networking: passed
stage1:testcase_11_package_set: passed
stage1:testcase_12_passwd_group: passed
stage1:testcase_13_resize2fs: passed
stage1:testcase_14_host_details: passed
stage1:testcase_15_rhel_version: passed
stage1:testcase_16_selinux: passed
stage1:testcase_17_shells: passed
stage1:testcase_18_sshd: passed
stage1:testcase_19_rhn_system_id: passed
stage1:testcase_20_auditd: passed
stage1:testcase_21_disk_size_format: passed
stage1:testcase_22_gpg_keys: passed
stage1:testcase_23_syslog: passed
stage1:testcase_24_yum_plugin: passed
stage1:testcase_25_uname: passed
stage1:testcase_26_verify_rpms: passed
stage1:testcase_27_yum_repos: failed
-
  result: failed
  actual repos:
  {'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-releases-beta': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-client-config-server-6-beta': True}
  expected repos: {'rhui-REGION-rhel-server-supplementary': False,
  'rhui-REGION-rhel-server-rhscl': True,
  'rhui-REGION-rhel-server-source-rhscl': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-source-supplementary': False,
  'rhui-REGION-rhel-server-debug-supplementary': False,
  'rhui-REGION-rhel-server-debug-rhscl': False,
  'rhui-REGION-client-config-server-6-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-rhel-server-releases-source': False,
  'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhui-REGION-rhel-server-releases-beta':
  True, 'rhui-REGION-rhel-server-releases-optional-source': False,
  'rhui-REGION-client-config-server-6': True,
  'rhui-REGION-rhel-server-releases': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-optional': True}
stage1:testcase_30_rhn_certificates: failed
-
  command: rpm -ql rh-amazon-rhui-client rh-amazon-rhui-client-beta
  result: passed
  value: package rh-amazon-rhui-client is not installed
  /etc/init.d/choose_beta_repo  /etc/init.d/rh-cloud-firstboot
  /etc/pki/rhui/ca.crt  /etc/pki/rhui/cdn.redhat.com-chain.crt
  /etc/pki/rhui/content-rhel6-beta.key
  /etc/pki/rhui/product/content-rhel6-beta.crt
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  /etc/pki/rhui/rhui-client-config-server-6-beta.key
  /etc/yum.repos.d/redhat-rhui-beta.repo
  /etc/yum.repos.d/redhat-rhui-client-config-beta.repo
  /etc/yum.repos.d/rhui-load-balancers.conf
  /etc/yum/pluginconf.d/amazon-id.conf
  /etc/yum/pluginconf.d/rhui-lb.conf
  /usr/lib/yum-plugins/amazon-id.py
  /usr/lib/yum-plugins/amazon-id.pyc
  /usr/lib/yum-plugins/amazon-id.pyo  /usr/lib/yum-plugins/rhui-lb.py
  /usr/lib/yum-plugins/rhui-lb.pyc  /usr/lib/yum-plugins/rhui-lb.pyo
  /usr/sbin/choose_repo.py  /usr/sbin/rh-cloud-firstboot.py
-
  command: openssl x509 -in /etc/pki/rhui/ca.crt -noout -dates
  result: passed
  value: notBefore=Aug 23 19:46:02 2011 GMT  notAfter=Nov 30 19:46:02
  2017 GMT
-
  result: failed
  comment: (/etc/pki/rhui/ca.crt).notAfter=2017-11-30 19:46:02;
  expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in /etc/pki/rhui/cdn.redhat.com-chain.crt
  -noout -dates
  result: passed
  value: notBefore=Mar 18 11:24:54 2010 GMT  notAfter=Mar 13 11:24:54
  2030 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/cdn.redhat.com-chain.crt).notAfter=2030-03-13
  11:24:54; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/content-rhel6-beta.crt -noout -dates
  result: passed
  value: notBefore=Mar 29 18:34:17 2012 GMT  notAfter=Nov 30 18:34:17
  2020 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/product/content-rhel6-beta.crt).notAfter=2020-11-30
  18:34:17; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt -noout
  -dates
  result: passed
  value: notBefore=Mar 29 18:38:42 2012 GMT  notAfter=Nov 30 18:38:42
  2020 GMT
-
  result: passed
  comment: (/etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  ).notAfter=2020-11-30 18:38:42; expecting: 2020-11-10 00:00:00
stage1:testcase_31_subscription_management: passed
stage1:testcase_32_ephemeral: failed
-
  command: ls -la /sbin/mkfs.vfat 2> /dev/null | wc -l
  result: passed
  value: 1
-
  command: fdisk -l /dev/xvdj | grep '^Disk'
  result: failed
  actual: 1
-
  command: grep '/dev/xvdj ' /proc/mounts  | wc -l
  result: passed
  value: 0
-
  command: mkfs.vfat -I /dev/xvdj
  result: failed
  actual: 1
stage1:testcase_33_userdata: passed
stage1:testcase_34_cpu: passed
stage1:testcase_360_ebs: passed
stage1:testcase_39_root_is_locked: passed
stage1:testcase_41_rh_amazon_rhui_client: passed
stage1:testcase_42_ipv6: passed
stage1:testcase_50_yum_package_install: passed
stage1:testcase_55_yum_group_install: passed
stage1:testcase_60_yum_update: passed
stage1:testcase_61_yum_proxy: passed
stage1:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127180.648:6): avc:
  denied  { setattr } for  pid=1057 comm="prelink" name="" dev=pipefs
  ino=11547 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127181.722:7): avc:
  denied  { setattr } for  pid=1085 comm="prelink" name="" dev=pipefs
  ino=11681 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127195.463:11): avc:
  denied  { setattr } for  pid=1119 comm="prelink" name="" dev=pipefs
  ino=11940 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127221.661:35): avc:
  denied  { setattr } for  pid=1230 comm="prelink" name="" dev=pipefs
  ino=12769 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127223.399:36): avc:
  denied  { read write } for  pid=1353 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127223.401:37): avc:
  denied  { read write } for  pid=1352 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127223.535:43): avc:
  denied  { setattr } for  pid=1367 comm="prelink" name="" dev=pipefs
  ino=13223 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127223.739:44): avc:
  denied  { setattr } for  pid=1381 comm="prelink" name="" dev=pipefs
  ino=13320 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-28-136-225 ~]#
  expectation:   START  END
stage1:testcase_99_reboot: passed
stage2:testcase_08_memory: passed
stage2:testcase_25_uname: passed
stage2:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127180.648:6): avc:
  denied  { setattr } for  pid=1057 comm="prelink" name="" dev=pipefs
  ino=11547 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127181.722:7): avc:
  denied  { setattr } for  pid=1085 comm="prelink" name="" dev=pipefs
  ino=11681 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127195.463:11): avc:
  denied  { setattr } for  pid=1119 comm="prelink" name="" dev=pipefs
  ino=11940 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127221.661:35): avc:
  denied  { setattr } for  pid=1230 comm="prelink" name="" dev=pipefs
  ino=12769 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127223.399:36): avc:
  denied  { read write } for  pid=1353 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127223.401:37): avc:
  denied  { read write } for  pid=1352 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127223.535:43): avc:
  denied  { setattr } for  pid=1367 comm="prelink" name="" dev=pipefs
  ino=13223 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127223.739:44): avc:
  denied  { setattr } for  pid=1381 comm="prelink" name="" dev=pipefs
  ino=13320 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128741.084:6): avc:
  denied  { setattr } for  pid=1054 comm="prelink" name="" dev=pipefs
  ino=11770 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128742.043:7): avc:
  denied  { setattr } for  pid=1081 comm="prelink" name="" dev=pipefs
  ino=11898 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128744.516:8): avc:
  denied  { setattr } for  pid=1150 comm="prelink" name="" dev=pipefs
  ino=12243 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128745.865:13): avc:
  denied  { read write } for  pid=1260 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128745.871:14): avc:
  denied  { read write } for  pid=1266 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128746.083:15): avc:
  denied  { setattr } for  pid=1286 comm="prelink" name="" dev=pipefs
  ino=12684 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128746.290:16): avc:
  denied  { setattr } for  pid=1300 comm="prelink" name="" dev=pipefs
  ino=12781 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-28-136-225 ~]#
  expectation:   START  END

Comment 7 Martin Minar 2014-08-28 13:12:48 UTC
# t1.micro: failed
stage1:testcase_01_bash_history: passed
stage1:testcase_02_selinux_context: passed
stage1:testcase_03_running_services: passed
stage1:testcase_04_cloud_firstboot: passed
stage1:testcase_05_grub: passed
stage1:testcase_06_inittab: passed
stage1:testcase_07_libc6_xen_conf: passed
stage1:testcase_08_memory: passed
stage1:testcase_09_nameserver: passed
stage1:testcase_10_networking: passed
stage1:testcase_11_package_set: passed
stage1:testcase_12_passwd_group: passed
stage1:testcase_13_resize2fs: failed
-
  command: df -h | grep 15G
  result: failed
  actual: 1
stage1:testcase_14_host_details: passed
stage1:testcase_15_rhel_version: passed
stage1:testcase_16_selinux: passed
stage1:testcase_17_shells: passed
stage1:testcase_18_sshd: passed
stage1:testcase_19_rhn_system_id: passed
stage1:testcase_20_auditd: passed
stage1:testcase_21_disk_size_format: passed
stage1:testcase_22_gpg_keys: passed
stage1:testcase_23_syslog: passed
stage1:testcase_24_yum_plugin: passed
stage1:testcase_25_uname: passed
stage1:testcase_26_verify_rpms: passed
stage1:testcase_27_yum_repos: failed
-
  result: failed
  actual repos:
  {'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-releases-beta': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-client-config-server-6-beta': True}
  expected repos: {'rhui-REGION-rhel-server-supplementary': False,
  'rhui-REGION-rhel-server-rhscl': True,
  'rhui-REGION-rhel-server-source-rhscl': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-source-supplementary': False,
  'rhui-REGION-rhel-server-debug-supplementary': False,
  'rhui-REGION-rhel-server-debug-rhscl': False,
  'rhui-REGION-client-config-server-6-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-rhel-server-releases-source': False,
  'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhui-REGION-rhel-server-releases-beta':
  True, 'rhui-REGION-rhel-server-releases-optional-source': False,
  'rhui-REGION-client-config-server-6': True,
  'rhui-REGION-rhel-server-releases': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-optional': True}
stage1:testcase_30_rhn_certificates: failed
-
  command: rpm -ql rh-amazon-rhui-client rh-amazon-rhui-client-beta
  result: passed
  value: package rh-amazon-rhui-client is not installed
  /etc/init.d/choose_beta_repo  /etc/init.d/rh-cloud-firstboot
  /etc/pki/rhui/ca.crt  /etc/pki/rhui/cdn.redhat.com-chain.crt
  /etc/pki/rhui/content-rhel6-beta.key
  /etc/pki/rhui/product/content-rhel6-beta.crt
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  /etc/pki/rhui/rhui-client-config-server-6-beta.key
  /etc/yum.repos.d/redhat-rhui-beta.repo
  /etc/yum.repos.d/redhat-rhui-client-config-beta.repo
  /etc/yum.repos.d/rhui-load-balancers.conf
  /etc/yum/pluginconf.d/amazon-id.conf
  /etc/yum/pluginconf.d/rhui-lb.conf
  /usr/lib/yum-plugins/amazon-id.py
  /usr/lib/yum-plugins/amazon-id.pyc
  /usr/lib/yum-plugins/amazon-id.pyo  /usr/lib/yum-plugins/rhui-lb.py
  /usr/lib/yum-plugins/rhui-lb.pyc  /usr/lib/yum-plugins/rhui-lb.pyo
  /usr/sbin/choose_repo.py  /usr/sbin/rh-cloud-firstboot.py
-
  command: openssl x509 -in /etc/pki/rhui/ca.crt -noout -dates
  result: passed
  value: notBefore=Aug 23 19:46:02 2011 GMT  notAfter=Nov 30 19:46:02
  2017 GMT
-
  result: failed
  comment: (/etc/pki/rhui/ca.crt).notAfter=2017-11-30 19:46:02;
  expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in /etc/pki/rhui/cdn.redhat.com-chain.crt
  -noout -dates
  result: passed
  value: notBefore=Mar 18 11:24:54 2010 GMT  notAfter=Mar 13 11:24:54
  2030 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/cdn.redhat.com-chain.crt).notAfter=2030-03-13
  11:24:54; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/content-rhel6-beta.crt -noout -dates
  result: passed
  value: notBefore=Mar 29 18:34:17 2012 GMT  notAfter=Nov 30 18:34:17
  2020 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/product/content-rhel6-beta.crt).notAfter=2020-11-30
  18:34:17; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt -noout
  -dates
  result: passed
  value: notBefore=Mar 29 18:38:42 2012 GMT  notAfter=Nov 30 18:38:42
  2020 GMT
-
  result: passed
  comment: (/etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  ).notAfter=2020-11-30 18:38:42; expecting: 2020-11-10 00:00:00
stage1:testcase_31_subscription_management: passed
stage1:testcase_32_ephemeral: passed
stage1:testcase_33_userdata: passed
stage1:testcase_34_cpu: passed
stage1:testcase_360_ebs: passed
stage1:testcase_39_root_is_locked: passed
stage1:testcase_41_rh_amazon_rhui_client: passed
stage1:testcase_42_ipv6: passed
stage1:testcase_50_yum_package_install: passed
stage1:testcase_55_yum_group_install: passed
stage1:testcase_60_yum_update: passed
stage1:testcase_61_yum_proxy: passed
stage1:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409129541.193:6): avc:
  denied  { setattr } for  pid=1006 comm="prelink" name="" dev=pipefs
  ino=11255 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129542.168:7): avc:
  denied  { setattr } for  pid=1033 comm="prelink" name="" dev=pipefs
  ino=11383 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129546.336:11): avc:
  denied  { setattr } for  pid=1066 comm="prelink" name="" dev=pipefs
  ino=11634 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129568.129:32): avc:
  denied  { setattr } for  pid=1173 comm="prelink" name="" dev=pipefs
  ino=12205 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129569.544:36): avc:
  denied  { read write } for  pid=1293 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262355
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129569.549:37): avc:
  denied  { read write } for  pid=1294 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262353
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129569.705:38): avc:
  denied  { setattr } for  pid=1310 comm="prelink" name="" dev=pipefs
  ino=12657 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129570.049:39): avc:
  denied  { setattr } for  pid=1324 comm="prelink" name="" dev=pipefs
  ino=12749 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@domU-12-31-39-17-2D-53 ~]#
  expectation:   START  END
stage1:testcase_99_reboot: passed
stage2:testcase_08_memory: passed
stage2:testcase_25_uname: passed
stage2:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409129541.193:6): avc:
  denied  { setattr } for  pid=1006 comm="prelink" name="" dev=pipefs
  ino=11255 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129542.168:7): avc:
  denied  { setattr } for  pid=1033 comm="prelink" name="" dev=pipefs
  ino=11383 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129546.336:11): avc:
  denied  { setattr } for  pid=1066 comm="prelink" name="" dev=pipefs
  ino=11634 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129568.129:32): avc:
  denied  { setattr } for  pid=1173 comm="prelink" name="" dev=pipefs
  ino=12205 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129569.544:36): avc:
  denied  { read write } for  pid=1293 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262355
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129569.549:37): avc:
  denied  { read write } for  pid=1294 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262353
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129569.705:38): avc:
  denied  { setattr } for  pid=1310 comm="prelink" name="" dev=pipefs
  ino=12657 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129570.049:39): avc:
  denied  { setattr } for  pid=1324 comm="prelink" name="" dev=pipefs
  ino=12749 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130062.018:515):
  avc:  denied  { setattr } for  pid=2562 comm="prelink" name=""
  dev=pipefs ino=37336
  scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:system_cronjob_t:s0-s0:c0.c1023
  tclass=fifo_file  /var/log/audit/audit.log:type=AVC
  msg=audit(1409130782.088:6): avc:  denied  { setattr } for  pid=1003
  comm="prelink" name="" dev=pipefs ino=11250
  scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130783.071:7): avc:
  denied  { setattr } for  pid=1030 comm="prelink" name="" dev=pipefs
  ino=11378 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130786.519:8): avc:
  denied  { setattr } for  pid=1099 comm="prelink" name="" dev=pipefs
  ino=11721 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130787.914:13): avc:
  denied  { read write } for  pid=1218 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262355
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130787.915:14): avc:
  denied  { read write } for  pid=1219 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262353
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130788.094:15): avc:
  denied  { setattr } for  pid=1235 comm="prelink" name="" dev=pipefs
  ino=12162 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409130788.521:16): avc:
  denied  { setattr } for  pid=1249 comm="prelink" name="" dev=pipefs
  ino=12262 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@domU-12-31-39-17-2D-53 ~]#
  expectation:   START  END

Comment 8 Martin Minar 2014-08-28 13:12:50 UTC
# m2.4xlarge: failed
stage1:testcase_01_bash_history: passed
stage1:testcase_02_selinux_context: passed
stage1:testcase_03_running_services: passed
stage1:testcase_04_cloud_firstboot: passed
stage1:testcase_05_grub: passed
stage1:testcase_06_inittab: passed
stage1:testcase_07_libc6_xen_conf: passed
stage1:testcase_08_memory: passed
stage1:testcase_09_nameserver: passed
stage1:testcase_10_networking: passed
stage1:testcase_11_package_set: passed
stage1:testcase_12_passwd_group: passed
stage1:testcase_13_resize2fs: passed
stage1:testcase_14_host_details: passed
stage1:testcase_15_rhel_version: passed
stage1:testcase_16_selinux: passed
stage1:testcase_17_shells: passed
stage1:testcase_18_sshd: passed
stage1:testcase_19_rhn_system_id: passed
stage1:testcase_20_auditd: passed
stage1:testcase_21_disk_size_format: passed
stage1:testcase_22_gpg_keys: passed
stage1:testcase_23_syslog: passed
stage1:testcase_24_yum_plugin: passed
stage1:testcase_25_uname: passed
stage1:testcase_26_verify_rpms: passed
stage1:testcase_27_yum_repos: failed
-
  result: failed
  actual repos:
  {'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-releases-beta': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-client-config-server-6-beta': True}
  expected repos: {'rhui-REGION-rhel-server-supplementary': False,
  'rhui-REGION-rhel-server-rhscl': True,
  'rhui-REGION-rhel-server-source-rhscl': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-source-supplementary': False,
  'rhui-REGION-rhel-server-debug-supplementary': False,
  'rhui-REGION-rhel-server-debug-rhscl': False,
  'rhui-REGION-client-config-server-6-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-rhel-server-releases-source': False,
  'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhui-REGION-rhel-server-releases-beta':
  True, 'rhui-REGION-rhel-server-releases-optional-source': False,
  'rhui-REGION-client-config-server-6': True,
  'rhui-REGION-rhel-server-releases': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-optional': True}
stage1:testcase_30_rhn_certificates: failed
-
  command: rpm -ql rh-amazon-rhui-client rh-amazon-rhui-client-beta
  result: passed
  value: package rh-amazon-rhui-client is not installed
  /etc/init.d/choose_beta_repo  /etc/init.d/rh-cloud-firstboot
  /etc/pki/rhui/ca.crt  /etc/pki/rhui/cdn.redhat.com-chain.crt
  /etc/pki/rhui/content-rhel6-beta.key
  /etc/pki/rhui/product/content-rhel6-beta.crt
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  /etc/pki/rhui/rhui-client-config-server-6-beta.key
  /etc/yum.repos.d/redhat-rhui-beta.repo
  /etc/yum.repos.d/redhat-rhui-client-config-beta.repo
  /etc/yum.repos.d/rhui-load-balancers.conf
  /etc/yum/pluginconf.d/amazon-id.conf
  /etc/yum/pluginconf.d/rhui-lb.conf
  /usr/lib/yum-plugins/amazon-id.py
  /usr/lib/yum-plugins/amazon-id.pyc
  /usr/lib/yum-plugins/amazon-id.pyo  /usr/lib/yum-plugins/rhui-lb.py
  /usr/lib/yum-plugins/rhui-lb.pyc  /usr/lib/yum-plugins/rhui-lb.pyo
  /usr/sbin/choose_repo.py  /usr/sbin/rh-cloud-firstboot.py
-
  command: openssl x509 -in /etc/pki/rhui/ca.crt -noout -dates
  result: passed
  value: notBefore=Aug 23 19:46:02 2011 GMT  notAfter=Nov 30 19:46:02
  2017 GMT
-
  result: failed
  comment: (/etc/pki/rhui/ca.crt).notAfter=2017-11-30 19:46:02;
  expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in /etc/pki/rhui/cdn.redhat.com-chain.crt
  -noout -dates
  result: passed
  value: notBefore=Mar 18 11:24:54 2010 GMT  notAfter=Mar 13 11:24:54
  2030 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/cdn.redhat.com-chain.crt).notAfter=2030-03-13
  11:24:54; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/content-rhel6-beta.crt -noout -dates
  result: passed
  value: notBefore=Mar 29 18:34:17 2012 GMT  notAfter=Nov 30 18:34:17
  2020 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/product/content-rhel6-beta.crt).notAfter=2020-11-30
  18:34:17; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt -noout
  -dates
  result: passed
  value: notBefore=Mar 29 18:38:42 2012 GMT  notAfter=Nov 30 18:38:42
  2020 GMT
-
  result: passed
  comment: (/etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  ).notAfter=2020-11-30 18:38:42; expecting: 2020-11-10 00:00:00
stage1:testcase_31_subscription_management: failed
-
  command: yum --disablerepo='*' -v repolist
  result: passed
  expectation: Not loading "subscription-manager" plugin
-
  command: yum --enableplugin=subscription-manager --disablerepo='*'
  -v repolist
  result: passed
  expectation: Loading "subscription-manager" plugin
-
  command: subscription-manager list
  result: failed
  actual: Config time: 0.896  Yum Version: 3.2.29  mirrorlist: https:/
  /rhui2-cds01.us-east-1.aws.ce.redhat.com/pulp/mirror/content/beta/rh
  el/rhui/server/6/6Server/x86_64/optional/source/SRPMS  mirrorlist: h
  ttps://rhui2-cds01.us-east-1.aws.ce.redhat.com/pulp/mirror/content/b
  eta/rhel/rhui/server/6/6Server/x86_64/os  mirrorlist: https://rhui2-
  cds01.us-east-1.aws.ce.redhat.com/pulp/mirror/content/beta/rhel/rhui
  /server/6/6Server/x86_64/source/SRPMS  mirrorlist: https://rhui2-cds
  01.us-east-1.aws.ce.redhat.com/pulp/mirror/content/beta/rhel/rhui/se
  rver/6/6Server/x86_64/optional/os  mirrorlist: https://rhui2-cds01.u
  s-east-1.aws.ce.redhat.com/pulp/mirror/rhui-client-config/beta/rhel/
  server/6/x86_64/os  Setting up Package Sacks  repolist: 0
  [root@ip-10-6-203-155 ~]# subscription-manager list  Unable to
  verify server's identity:   [root@ip-10-6-203-155 ~]#
  expectation: Installed Product Status
stage1:testcase_32_ephemeral: failed
-
  command: ls -la /sbin/mkfs.vfat 2> /dev/null | wc -l
  result: passed
  value: 1
-
  command: fdisk -l /dev/xvdj | grep '^Disk'
  result: failed
  actual: 1
-
  command: grep '/dev/xvdj ' /proc/mounts  | wc -l
  result: passed
  value: 0
-
  command: mkfs.vfat -I /dev/xvdj
  result: failed
  actual: 1
stage1:testcase_33_userdata: passed
stage1:testcase_34_cpu: passed
stage1:testcase_360_ebs: passed
stage1:testcase_39_root_is_locked: passed
stage1:testcase_41_rh_amazon_rhui_client: passed
stage1:testcase_42_ipv6: passed
stage1:testcase_50_yum_package_install: passed
stage1:testcase_55_yum_group_install: passed
stage1:testcase_60_yum_update: passed
stage1:testcase_61_yum_proxy: passed
stage1:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127200.289:6): avc:
  denied  { setattr } for  pid=1244 comm="prelink" name="" dev=pipefs
  ino=12481 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127201.276:7): avc:
  denied  { setattr } for  pid=1272 comm="prelink" name="" dev=pipefs
  ino=12615 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127218.768:11): avc:
  denied  { setattr } for  pid=1306 comm="prelink" name="" dev=pipefs
  ino=12874 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127247.009:35): avc:
  denied  { setattr } for  pid=1417 comm="prelink" name="" dev=pipefs
  ino=13703 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127248.180:36): avc:
  denied  { read write } for  pid=1535 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127248.182:37): avc:
  denied  { read write } for  pid=1536 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127248.291:38): avc:
  denied  { setattr } for  pid=1554 comm="prelink" name="" dev=pipefs
  ino=14148 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127248.502:39): avc:
  denied  { setattr } for  pid=1568 comm="prelink" name="" dev=pipefs
  ino=14247 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-6-203-155 ~]#
  expectation:   START  END
stage1:testcase_99_reboot: passed
stage2:testcase_08_memory: passed
stage2:testcase_25_uname: passed
stage2:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127200.289:6): avc:
  denied  { setattr } for  pid=1244 comm="prelink" name="" dev=pipefs
  ino=12481 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127201.276:7): avc:
  denied  { setattr } for  pid=1272 comm="prelink" name="" dev=pipefs
  ino=12615 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127218.768:11): avc:
  denied  { setattr } for  pid=1306 comm="prelink" name="" dev=pipefs
  ino=12874 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127247.009:35): avc:
  denied  { setattr } for  pid=1417 comm="prelink" name="" dev=pipefs
  ino=13703 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127248.180:36): avc:
  denied  { read write } for  pid=1535 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127248.182:37): avc:
  denied  { read write } for  pid=1536 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127248.291:38): avc:
  denied  { setattr } for  pid=1554 comm="prelink" name="" dev=pipefs
  ino=14148 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127248.502:39): avc:
  denied  { setattr } for  pid=1568 comm="prelink" name="" dev=pipefs
  ino=14247 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129761.201:6): avc:
  denied  { setattr } for  pid=1242 comm="prelink" name="" dev=pipefs
  ino=12708 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129762.097:7): avc:
  denied  { setattr } for  pid=1269 comm="prelink" name="" dev=pipefs
  ino=12836 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129764.352:8): avc:
  denied  { setattr } for  pid=1338 comm="prelink" name="" dev=pipefs
  ino=13181 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129765.599:9): avc:
  denied  { read write } for  pid=1446 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129765.600:10): avc:
  denied  { read write } for  pid=1447 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129765.763:11): avc:
  denied  { setattr } for  pid=1471 comm="prelink" name="" dev=pipefs
  ino=13592 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409129765.992:12): avc:
  denied  { setattr } for  pid=1485 comm="prelink" name="" dev=pipefs
  ino=13685 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-6-203-155 ~]#
  expectation:   START  END

Comment 9 Martin Minar 2014-08-28 13:12:52 UTC
# m2.2xlarge: failed
stage1:testcase_01_bash_history: passed
stage1:testcase_02_selinux_context: passed
stage1:testcase_03_running_services: passed
stage1:testcase_04_cloud_firstboot: passed
stage1:testcase_05_grub: passed
stage1:testcase_06_inittab: passed
stage1:testcase_07_libc6_xen_conf: passed
stage1:testcase_08_memory: passed
stage1:testcase_09_nameserver: passed
stage1:testcase_10_networking: passed
stage1:testcase_11_package_set: passed
stage1:testcase_12_passwd_group: passed
stage1:testcase_13_resize2fs: passed
stage1:testcase_14_host_details: passed
stage1:testcase_15_rhel_version: passed
stage1:testcase_16_selinux: passed
stage1:testcase_17_shells: passed
stage1:testcase_18_sshd: passed
stage1:testcase_19_rhn_system_id: passed
stage1:testcase_20_auditd: passed
stage1:testcase_21_disk_size_format: passed
stage1:testcase_22_gpg_keys: passed
stage1:testcase_23_syslog: passed
stage1:testcase_24_yum_plugin: passed
stage1:testcase_25_uname: passed
stage1:testcase_26_verify_rpms: passed
stage1:testcase_27_yum_repos: failed
-
  result: failed
  actual repos:
  {'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-releases-beta': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-client-config-server-6-beta': True}
  expected repos: {'rhui-REGION-rhel-server-supplementary': False,
  'rhui-REGION-rhel-server-rhscl': True,
  'rhui-REGION-rhel-server-source-rhscl': False, 'rhel-source': False,
  'rhui-REGION-rhel-server-source-supplementary': False,
  'rhui-REGION-rhel-server-debug-supplementary': False,
  'rhui-REGION-rhel-server-debug-rhscl': False,
  'rhui-REGION-client-config-server-6-beta': True,
  'rhui-REGION-rhel-server-releases-source-beta': False,
  'rhui-REGION-rhel-server-releases-source': False,
  'rhui-REGION-rhel-server-releases-optional-source-beta': False,
  'rhel-source-beta': False, 'rhui-REGION-rhel-server-releases-beta':
  True, 'rhui-REGION-rhel-server-releases-optional-source': False,
  'rhui-REGION-client-config-server-6': True,
  'rhui-REGION-rhel-server-releases': True,
  'rhui-REGION-rhel-server-releases-optional-beta': True,
  'rhui-REGION-rhel-server-releases-optional': True}
stage1:testcase_30_rhn_certificates: failed
-
  command: rpm -ql rh-amazon-rhui-client rh-amazon-rhui-client-beta
  result: passed
  value: package rh-amazon-rhui-client is not installed
  /etc/init.d/choose_beta_repo  /etc/init.d/rh-cloud-firstboot
  /etc/pki/rhui/ca.crt  /etc/pki/rhui/cdn.redhat.com-chain.crt
  /etc/pki/rhui/content-rhel6-beta.key
  /etc/pki/rhui/product/content-rhel6-beta.crt
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  /etc/pki/rhui/rhui-client-config-server-6-beta.key
  /etc/yum.repos.d/redhat-rhui-beta.repo
  /etc/yum.repos.d/redhat-rhui-client-config-beta.repo
  /etc/yum.repos.d/rhui-load-balancers.conf
  /etc/yum/pluginconf.d/amazon-id.conf
  /etc/yum/pluginconf.d/rhui-lb.conf
  /usr/lib/yum-plugins/amazon-id.py
  /usr/lib/yum-plugins/amazon-id.pyc
  /usr/lib/yum-plugins/amazon-id.pyo  /usr/lib/yum-plugins/rhui-lb.py
  /usr/lib/yum-plugins/rhui-lb.pyc  /usr/lib/yum-plugins/rhui-lb.pyo
  /usr/sbin/choose_repo.py  /usr/sbin/rh-cloud-firstboot.py
-
  command: openssl x509 -in /etc/pki/rhui/ca.crt -noout -dates
  result: passed
  value: notBefore=Aug 23 19:46:02 2011 GMT  notAfter=Nov 30 19:46:02
  2017 GMT
-
  result: failed
  comment: (/etc/pki/rhui/ca.crt).notAfter=2017-11-30 19:46:02;
  expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in /etc/pki/rhui/cdn.redhat.com-chain.crt
  -noout -dates
  result: passed
  value: notBefore=Mar 18 11:24:54 2010 GMT  notAfter=Mar 13 11:24:54
  2030 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/cdn.redhat.com-chain.crt).notAfter=2030-03-13
  11:24:54; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/content-rhel6-beta.crt -noout -dates
  result: passed
  value: notBefore=Mar 29 18:34:17 2012 GMT  notAfter=Nov 30 18:34:17
  2020 GMT
-
  result: passed
  comment:
  (/etc/pki/rhui/product/content-rhel6-beta.crt).notAfter=2020-11-30
  18:34:17; expecting: 2020-11-10 00:00:00
-
  command: openssl x509 -in
  /etc/pki/rhui/product/rhui-client-config-server-6-beta.crt -noout
  -dates
  result: passed
  value: notBefore=Mar 29 18:38:42 2012 GMT  notAfter=Nov 30 18:38:42
  2020 GMT
-
  result: passed
  comment: (/etc/pki/rhui/product/rhui-client-config-server-6-beta.crt
  ).notAfter=2020-11-30 18:38:42; expecting: 2020-11-10 00:00:00
stage1:testcase_31_subscription_management: passed
stage1:testcase_32_ephemeral: failed
-
  command: ls -la /sbin/mkfs.vfat 2> /dev/null | wc -l
  result: passed
  value: 1
-
  command: fdisk -l /dev/xvdj | grep '^Disk'
  result: failed
  actual: 1
-
  command: grep '/dev/xvdj ' /proc/mounts  | wc -l
  result: passed
  value: 0
-
  command: mkfs.vfat -I /dev/xvdj
  result: failed
  actual: 1
stage1:testcase_33_userdata: passed
stage1:testcase_34_cpu: passed
stage1:testcase_360_ebs: passed
stage1:testcase_39_root_is_locked: passed
stage1:testcase_41_rh_amazon_rhui_client: passed
stage1:testcase_42_ipv6: passed
stage1:testcase_50_yum_package_install: passed
stage1:testcase_55_yum_group_install: passed
stage1:testcase_60_yum_update: passed
stage1:testcase_61_yum_proxy: passed
stage1:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127192.002:6): avc:
  denied  { setattr } for  pid=1121 comm="prelink" name="" dev=pipefs
  ino=11846 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127193.018:7): avc:
  denied  { setattr } for  pid=1149 comm="prelink" name="" dev=pipefs
  ino=11980 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127211.537:11): avc:
  denied  { setattr } for  pid=1183 comm="prelink" name="" dev=pipefs
  ino=12239 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127235.608:32): avc:
  denied  { setattr } for  pid=1294 comm="prelink" name="" dev=pipefs
  ino=13061 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127236.827:36): avc:
  denied  { read write } for  pid=1412 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127236.828:37): avc:
  denied  { read write } for  pid=1413 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127236.948:38): avc:
  denied  { setattr } for  pid=1431 comm="prelink" name="" dev=pipefs
  ino=13513 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127237.151:39): avc:
  denied  { setattr } for  pid=1445 comm="prelink" name="" dev=pipefs
  ino=13609 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-73-137-54 ~]#
  expectation:   START  END
stage1:testcase_99_reboot: passed
stage2:testcase_08_memory: passed
stage2:testcase_25_uname: passed
stage2:testcase_80_no_avc_denials: failed
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/audit/audit.log:type=AVC msg=audit(1409127192.002:6): avc:
  denied  { setattr } for  pid=1121 comm="prelink" name="" dev=pipefs
  ino=11846 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127193.018:7): avc:
  denied  { setattr } for  pid=1149 comm="prelink" name="" dev=pipefs
  ino=11980 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127211.537:11): avc:
  denied  { setattr } for  pid=1183 comm="prelink" name="" dev=pipefs
  ino=12239 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127235.608:32): avc:
  denied  { setattr } for  pid=1294 comm="prelink" name="" dev=pipefs
  ino=13061 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127236.827:36): avc:
  denied  { read write } for  pid=1412 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127236.828:37): avc:
  denied  { read write } for  pid=1413 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127236.948:38): avc:
  denied  { setattr } for  pid=1431 comm="prelink" name="" dev=pipefs
  ino=13513 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409127237.151:39): avc:
  denied  { setattr } for  pid=1445 comm="prelink" name="" dev=pipefs
  ino=13609 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128811.624:6): avc:
  denied  { setattr } for  pid=1132 comm="prelink" name="" dev=pipefs
  ino=12088 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128812.538:7): avc:
  denied  { setattr } for  pid=1159 comm="prelink" name="" dev=pipefs
  ino=12216 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128814.833:8): avc:
  denied  { setattr } for  pid=1228 comm="prelink" name="" dev=pipefs
  ino=12561 scontext=system_u:system_r:prelink_t:s0
  tcontext=system_u:system_r:initrc_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128816.056:9): avc:
  denied  { read write } for  pid=1334 comm="prelink"
  path="/var/spool/postfix/public/qmgr" dev=xvda1 ino=262291
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128816.056:10): avc:
  denied  { read write } for  pid=1335 comm="prelink"
  path="/var/spool/postfix/public/pickup" dev=xvda1 ino=262289
  scontext=system_u:system_r:prelink_mask_t:s0
  tcontext=system_u:object_r:postfix_public_t:s0 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128816.298:11): avc:
  denied  { setattr } for  pid=1361 comm="prelink" name="" dev=pipefs
  ino=12972 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  /var/log/audit/audit.log:type=AVC msg=audit(1409128816.489:12): avc:
  denied  { setattr } for  pid=1375 comm="prelink" name="" dev=pipefs
  ino=13062 scontext=system_u:system_r:prelink_t:s0-s0:c0.c1023
  tcontext=system_u:system_r:crond_t:s0-s0:c0.c1023 tclass=fifo_file
  END  [root@ip-10-73-137-54 ~]#
  expectation:   START  END

Comment 10 mkovacik 2014-11-28 13:28:30 UTC
closing irrelevant validation bugs


Note You need to log in before you can comment on or make changes to this bug.