Hide Forgot
Created attachment 1134734 [details] ami-80790ae0-log.yaml
# m3.xlarge: waived stage1:testcase_42_ipv6: passed stage1:testcase_07_libc6_xen_conf: passed stage1:testcase_25_uname: passed stage1:testcase_26_verify_rpms: passed stage1:testcase_66_bug1122300_proc_cmdline: passed stage1:testcase_11_package_set: skip stage1:testcase_60_yum_update: passed stage1:testcase_39_root_is_locked: passed stage1:testcase_410_rh_cloud_firstboot: passed stage1:testcase_22_gpg_keys: passed stage1:testcase_04_cloud_firstboot: passed stage1:testcase_141_hostname: waived - command: test -f /root/hostname_text.txt || hostname > /root/hostname_text.txt; sync result: failed actual: None - command: grep -x `hostname` /root/hostname_text.txt result: passed stage1:testcase_16_selinux: passed stage1:testcase_23_syslog: passed stage1:testcase_03_running_services: passed stage1:testcase_80_no_avc_denials: waived - command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages /var/log/audit/audit.log | grep -v userdata; echo END result: failed actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages /var/log/audit/audit.log | grep -v userdata; echo END START /var/log/messages:Mar 8 09:41:02 ip-10-233-138-125 kernel: type=1400 audit(1457448047.881:4): avc: denied { read } for pid=545 comm="hwclock" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:hwclock_t:s0-s0:c0.c1023 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/messages:Mar 8 09:41:02 ip-10-233-138-125 kernel: type=1400 audit(1457448054.597:5): avc: denied { read } for pid=875 comm="date" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sysstat_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/messages:Mar 8 09:41:02 ip-10-233-138-125 kernel: type=1400 audit(1457448054.613:6): avc: denied { read } for pid=876 comm="date" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sysstat_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/messages:Mar 8 09:41:02 ip-10-233-138-125 kernel: type=1400 audit(1457448054.738:7): avc: denied { read } for pid=874 comm="sadc" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sysstat_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/messages:Mar 8 09:41:02 ip-10-233-138-125 kernel: type=1400 audit(1457448054.756:8): avc: denied { read } for pid=874 comm="sadc" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sysstat_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/messages:Mar 8 09:41:02 ip-10-233-138-125 kernel: type=1400 audit(1457448054.783:9): avc: denied { read } for pid=874 comm="sadc" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sysstat_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/messages:Mar 8 09:41:02 ip-10-233-138-125 kernel: type=1400 audit(1457448061.977:10): avc: denied { read } for pid=1092 comm="audispd" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:audisp_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457448163.749:289): avc: denied { read } for pid=1864 comm="newaliases" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sendmail_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457448163.753:290): avc: denied { read } for pid=1864 comm="newaliases" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sendmail_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457448185.298:415): avc: denied { read } for pid=1993 comm="passwd" name="localtime" dev=xvda1 ino=1266 scontext=unconfined_u:unconfined_r:passwd_t:s0-s0:c0.c1023 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457448198.977:468): avc: denied { read } for pid=2100 comm="pickup" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:postfix_pickup_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457448198.980:469): avc: denied { read } for pid=2100 comm="pickup" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:postfix_pickup_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457448199.104:470): avc: denied { read } for pid=2101 comm="qmgr" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:postfix_qmgr_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457448199.107:471): avc: denied { read } for pid=2101 comm="qmgr" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:postfix_qmgr_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457448265.766:567): avc: denied { read } for pid=1222 comm="dbus-daemon" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:system_dbusd_t:s0-s0:c0.c1023 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457448265.766:567): avc: denied { open } for pid=1222 comm="dbus-daemon" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:system_dbusd_t:s0-s0:c0.c1023 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457448265.766:568): avc: denied { getattr } for pid=1222 comm="dbus-daemon" path="/etc/localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:system_dbusd_t:s0-s0:c0.c1023 tcontext=system_u:object_r:root_t:s0 tclass=file END [root@ip-10-233-138-125 ~]# expectation: START END stage1:testcase_21_disk_size_format: passed stage1:testcase_99_ssh_key: waived - command: echo "ssh-rsa AAAAB3NzaC1yc2EAAAABIwAAAQEAtIc6X/1qXsEPjvnPd K2nXS3v6wpBTgU6nLFagsaEJ27LtB0b+UpOpagCHxK3LxSYX8JB3g2ns5/WTFXGmltpy XnVX2BRLvpX2Yqq5Bh2ykWNu/mwQUa+BuuHOjFZMoG8N6jK3fkUXLjHDfi76xFU7SA9V iC7BVTzvBTQuZLyGHjhwLctaPlfD4yBO06npAVGlCyWm3VzX0ivZkxdtVCLd2IjFvwbb V3QuUwfWD0W93l0ULvVLst6g2O2AJNkVFS9WKzgjQvsJh1r18rVGrM+vqTB7KrGJLSsg UOtC3mC4apigYkP6rxaakpSy95zYrEXxDiSodW7aJAQoqTw5r+waw== root.rhts.eng.bos.redhat.com" >> /home/cloud-user/.ssh/authorized_keys result: failed actual: 1 stage1:testcase_360_ebs: passed stage1:testcase_35_console: passed stage1:testcase_30_rhn_certificates: passed stage1:testcase_09_nameserver: waived - command: dig clock.redhat.com | grep 66.187.233.4 result: failed actual: 1 stage1:testcase_41_rh_amazon_rhui_client: passed stage1:testcase_20_auditd: passed stage1:testcase_19_rhn_system_id: passed stage1:testcase_15_rhel_version: passed stage1:testcase_18_sshd: passed stage1:testcase_05_grub: passed stage1:testcase_420_ip6tables: passed stage1:testcase_06_inittab: passed stage1:testcase_08_memory: passed stage1:testcase_10_networking: passed stage1:testcase_12_passwd_group: passed stage1:testcase_62_cpuflags: passed stage1:testcase_01_bash_history: passed stage1:testcase_17_shells: passed stage1:testcase_02_selinux_context: passed stage1:testcase_33_userdata: passed stage1:testcase_34_cpu: passed stage1:testcase_380_bug1103344_ttySOconf: passed stage1:testcase_63_sriov: skip stage1:testcase_14_host_details: passed stage1:testcase_24_yum_plugin: passed stage1:testcase_61_yum_proxy: passed stage1:testcase_32_ephemeral: passed stage1:testcase_27_yum_repos: passed stage1:testcase_31_subscription_management: passed stage1:testcase_50_yum_package_install: passed stage2:testcase_80_no_avc_denials: waived - command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages /var/log/audit/audit.log | grep -v userdata; echo END result: failed actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages /var/log/audit/audit.log | grep -v userdata; echo END START /var/log/messages:Mar 8 09:41:02 ip-10-233-138-125 kernel: type=1400 audit(1457448047.881:4): avc: denied { read } for pid=545 comm="hwclock" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:hwclock_t:s0-s0:c0.c1023 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/messages:Mar 8 09:41:02 ip-10-233-138-125 kernel: type=1400 audit(1457448054.597:5): avc: denied { read } for pid=875 comm="date" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sysstat_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/messages:Mar 8 09:41:02 ip-10-233-138-125 kernel: type=1400 audit(1457448054.613:6): avc: denied { read } for pid=876 comm="date" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sysstat_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/messages:Mar 8 09:41:02 ip-10-233-138-125 kernel: type=1400 audit(1457448054.738:7): avc: denied { read } for pid=874 comm="sadc" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sysstat_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/messages:Mar 8 09:41:02 ip-10-233-138-125 kernel: type=1400 audit(1457448054.756:8): avc: denied { read } for pid=874 comm="sadc" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sysstat_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/messages:Mar 8 09:41:02 ip-10-233-138-125 kernel: type=1400 audit(1457448054.783:9): avc: denied { read } for pid=874 comm="sadc" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sysstat_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/messages:Mar 8 09:41:02 ip-10-233-138-125 kernel: type=1400 audit(1457448061.977:10): avc: denied { read } for pid=1092 comm="audispd" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:audisp_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/messages:Mar 8 10:02:07 ip-10-233-138-125 kernel: type=1400 audit(1457449318.665:4): avc: denied { read } for pid=501 comm="hwclock" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:hwclock_t:s0-s0:c0.c1023 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/messages:Mar 8 10:02:07 ip-10-233-138-125 kernel: type=1400 audit(1457449323.524:5): avc: denied { read } for pid=842 comm="date" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sysstat_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/messages:Mar 8 10:02:07 ip-10-233-138-125 kernel: type=1400 audit(1457449323.539:6): avc: denied { read } for pid=843 comm="date" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sysstat_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/messages:Mar 8 10:02:07 ip-10-233-138-125 kernel: type=1400 audit(1457449323.561:7): avc: denied { read } for pid=841 comm="sadc" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sysstat_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/messages:Mar 8 10:02:07 ip-10-233-138-125 kernel: type=1400 audit(1457449323.575:8): avc: denied { read } for pid=841 comm="sadc" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sysstat_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/messages:Mar 8 10:02:07 ip-10-233-138-125 kernel: type=1400 audit(1457449323.591:9): avc: denied { read } for pid=841 comm="sadc" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sysstat_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/messages:Mar 8 10:02:07 ip-10-233-138-125 kernel: type=1400 audit(1457449327.548:11): avc: denied { read } for pid=1058 comm="audispd" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:audisp_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457448163.749:289): avc: denied { read } for pid=1864 comm="newaliases" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sendmail_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457448163.753:290): avc: denied { read } for pid=1864 comm="newaliases" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sendmail_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457448185.298:415): avc: denied { read } for pid=1993 comm="passwd" name="localtime" dev=xvda1 ino=1266 scontext=unconfined_u:unconfined_r:passwd_t:s0-s0:c0.c1023 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457448198.977:468): avc: denied { read } for pid=2100 comm="pickup" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:postfix_pickup_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457448198.980:469): avc: denied { read } for pid=2100 comm="pickup" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:postfix_pickup_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457448199.104:470): avc: denied { read } for pid=2101 comm="qmgr" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:postfix_qmgr_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457448199.107:471): avc: denied { read } for pid=2101 comm="qmgr" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:postfix_qmgr_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457448265.766:567): avc: denied { read } for pid=1222 comm="dbus-daemon" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:system_dbusd_t:s0-s0:c0.c1023 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457448265.766:567): avc: denied { open } for pid=1222 comm="dbus-daemon" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:system_dbusd_t:s0-s0:c0.c1023 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457448265.766:568): avc: denied { getattr } for pid=1222 comm="dbus-daemon" path="/etc/localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:system_dbusd_t:s0-s0:c0.c1023 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457448601.533:1515): avc: denied { read } for pid=14191 comm="date" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sysstat_t:s0-s0:c0.c1023 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457448601.534:1516): avc: denied { read } for pid=14192 comm="date" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sysstat_t:s0-s0:c0.c1023 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457448601.535:1517): avc: denied { read } for pid=14190 comm="sadc" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sysstat_t:s0-s0:c0.c1023 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457448601.536:1518): avc: denied { read } for pid=14190 comm="sadc" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sysstat_t:s0-s0:c0.c1023 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457448601.536:1519): avc: denied { read } for pid=14190 comm="sadc" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sysstat_t:s0-s0:c0.c1023 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457448601.540:1520): avc: denied { read } for pid=14190 comm="sadc" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sysstat_t:s0-s0:c0.c1023 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457449201.618:1775): avc: denied { read } for pid=14501 comm="date" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sysstat_t:s0-s0:c0.c1023 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457449201.619:1776): avc: denied { read } for pid=14502 comm="date" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sysstat_t:s0-s0:c0.c1023 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457449201.620:1777): avc: denied { read } for pid=14500 comm="sadc" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sysstat_t:s0-s0:c0.c1023 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457449201.717:1778): avc: denied { read } for pid=14500 comm="sadc" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sysstat_t:s0-s0:c0.c1023 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457449201.717:1779): avc: denied { read } for pid=14500 comm="sadc" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sysstat_t:s0-s0:c0.c1023 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457449201.724:1780): avc: denied { read } for pid=14500 comm="sadc" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:sysstat_t:s0-s0:c0.c1023 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457449218.262:1822): avc: denied { read } for pid=14565 comm="shutdown" name="localtime" dev=xvda1 ino=1266 scontext=unconfined_u:unconfined_r:shutdown_t:s0-s0:c0.c1023 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457449336.536:13): avc: denied { read } for pid=1528 comm="pickup" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:postfix_pickup_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457449336.539:14): avc: denied { read } for pid=1528 comm="pickup" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:postfix_pickup_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457449336.541:15): avc: denied { read } for pid=1529 comm="qmgr" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:postfix_qmgr_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file /var/log/audit/audit.log:type=AVC msg=audit(1457449336.543:16): avc: denied { read } for pid=1529 comm="qmgr" name="localtime" dev=xvda1 ino=1266 scontext=system_u:system_r:postfix_qmgr_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=file END [root@ip-10-233-138-125 ~]# expectation: START END stage2:testcase_380_bug1103344_ttySOconf: passed stage2:testcase_141_hostname: waived - command: test -f /root/hostname_text.txt || hostname > /root/hostname_text.txt; sync result: passed - command: grep -x `hostname` /root/hostname_text.txt result: failed actual: 1 stage2:testcase_25_uname: passed stage2:testcase_37_sshd_bug923996: passed stage2:testcase_66_bug1122300_proc_cmdline: passed stage2:testcase_08_memory: passed