Bug 1316416 - us-west-1 beta cloud 6.8 x86_64 access ami-8c7f0cec
Summary: us-west-1 beta cloud 6.8 x86_64 access ami-8c7f0cec
Keywords:
Status: CLOSED NOTABUG
Alias: None
Product: Cloud Image Validation
Classification: Red Hat
Component: images
Version: RHEL6.8
Hardware: x86_64
OS: Linux
unspecified
unspecified
Target Milestone: ---
Assignee: Vratislav Hutsky
QA Contact: Pavlina Bartikova
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2016-03-10 07:52 UTC by Martin Minar
Modified: 2021-12-07 16:57 UTC (History)
0 users

Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Clone Of:
Environment:
Last Closed: 2021-12-07 16:57:15 UTC
Target Upstream Version:
Embargoed:


Attachments (Terms of Use)
ami-8c7f0cec-log.yaml (157.25 KB, text/yaml)
2016-03-10 07:53 UTC, Martin Minar
no flags Details

Description Martin Minar 2016-03-10 07:52:45 UTC

Comment 1 Martin Minar 2016-03-10 07:53:04 UTC
Created attachment 1134746 [details]
ami-8c7f0cec-log.yaml

Comment 2 Martin Minar 2016-03-10 07:53:06 UTC
# m3.xlarge: waived
stage1:testcase_26_verify_rpms: passed
stage1:testcase_22_gpg_keys: passed
stage1:testcase_20_auditd: passed
stage1:testcase_25_uname: passed
stage1:testcase_63_sriov: skip
stage1:testcase_141_hostname: passed
stage1:testcase_17_shells: passed
stage1:testcase_360_ebs: passed
stage1:testcase_80_no_avc_denials: waived
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/messages:Mar  8 09:40:58 ip-10-233-137-25 kernel: type=1400
  audit(1457448046.227:4): avc:  denied  { read } for  pid=557
  comm="hwclock" name="localtime" dev=xvda1 ino=1266
  scontext=system_u:system_r:hwclock_t:s0-s0:c0.c1023
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/messages:Mar  8 09:40:58 ip-10-233-137-25 kernel: type=1400
  audit(1457448053.202:5): avc:  denied  { read } for  pid=870
  comm="date" name="localtime" dev=xvda1 ino=1266
  scontext=system_u:system_r:sysstat_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/messages:Mar  8 09:40:58 ip-10-233-137-25 kernel: type=1400
  audit(1457448053.215:6): avc:  denied  { read } for  pid=871
  comm="date" name="localtime" dev=xvda1 ino=1266
  scontext=system_u:system_r:sysstat_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/messages:Mar  8 09:40:58 ip-10-233-137-25 kernel: type=1400
  audit(1457448053.340:7): avc:  denied  { read } for  pid=869
  comm="sadc" name="localtime" dev=xvda1 ino=1266
  scontext=system_u:system_r:sysstat_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/messages:Mar  8 09:40:58 ip-10-233-137-25 kernel: type=1400
  audit(1457448053.353:8): avc:  denied  { read } for  pid=869
  comm="sadc" name="localtime" dev=xvda1 ino=1266
  scontext=system_u:system_r:sysstat_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/messages:Mar  8 09:40:58 ip-10-233-137-25 kernel: type=1400
  audit(1457448053.364:9): avc:  denied  { read } for  pid=869
  comm="sadc" name="localtime" dev=xvda1 ino=1266
  scontext=system_u:system_r:sysstat_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/messages:Mar  8 09:40:58 ip-10-233-137-25 kernel: type=1400
  audit(1457448057.903:10): avc:  denied  { read } for  pid=1087
  comm="audispd" name="localtime" dev=xvda1 ino=1266
  scontext=system_u:system_r:audisp_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/audit/audit.log:type=AVC msg=audit(1457448198.982:313):
  avc:  denied  { read } for  pid=1930 comm="newaliases"
  name="localtime" dev=xvda1 ino=1266
  scontext=system_u:system_r:sendmail_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/audit/audit.log:type=AVC msg=audit(1457448198.986:314):
  avc:  denied  { read } for  pid=1930 comm="newaliases"
  name="localtime" dev=xvda1 ino=1266
  scontext=system_u:system_r:sendmail_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/audit/audit.log:type=AVC msg=audit(1457448199.747:315):
  avc:  denied  { read } for  pid=2006 comm="pickup" name="localtime"
  dev=xvda1 ino=1266 scontext=system_u:system_r:postfix_pickup_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/audit/audit.log:type=AVC msg=audit(1457448199.750:316):
  avc:  denied  { read } for  pid=2006 comm="pickup" name="localtime"
  dev=xvda1 ino=1266 scontext=system_u:system_r:postfix_pickup_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/audit/audit.log:type=AVC msg=audit(1457448199.961:317):
  avc:  denied  { read } for  pid=2007 comm="qmgr" name="localtime"
  dev=xvda1 ino=1266 scontext=system_u:system_r:postfix_qmgr_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/audit/audit.log:type=AVC msg=audit(1457448199.963:318):
  avc:  denied  { read } for  pid=2007 comm="qmgr" name="localtime"
  dev=xvda1 ino=1266 scontext=system_u:system_r:postfix_qmgr_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file  END
  [root@ip-10-233-137-25 ~]#
  expectation:   START  END
stage1:testcase_66_bug1122300_proc_cmdline: passed
stage1:testcase_60_yum_update: passed
stage1:testcase_420_ip6tables: passed
stage1:testcase_09_nameserver: waived
-
  command: dig clock.redhat.com | grep 66.187.233.4
  result: failed
  actual: 1
stage1:testcase_42_ipv6: passed
stage1:testcase_15_rhel_version: passed
stage1:testcase_04_cloud_firstboot: passed
stage1:testcase_14_host_details: passed
stage1:testcase_08_memory: passed
stage1:testcase_19_rhn_system_id: passed
stage1:testcase_11_package_set: skip
stage1:testcase_05_grub: passed
stage1:testcase_23_syslog: passed
stage1:testcase_01_bash_history: passed
stage1:testcase_21_disk_size_format: passed
stage1:testcase_03_running_services: passed
stage1:testcase_06_inittab: passed
stage1:testcase_30_rhn_certificates: passed
stage1:testcase_07_libc6_xen_conf: passed
stage1:testcase_33_userdata: passed
stage1:testcase_12_passwd_group: passed
stage1:testcase_18_sshd: passed
stage1:testcase_10_networking: passed
stage1:testcase_02_selinux_context: passed
stage1:testcase_34_cpu: passed
stage1:testcase_41_rh_amazon_rhui_client: passed
stage1:testcase_410_rh_cloud_firstboot: passed
stage1:testcase_39_root_is_locked: passed
stage1:testcase_35_console: passed
stage1:testcase_380_bug1103344_ttySOconf: passed
stage1:testcase_62_cpuflags: passed
stage1:testcase_16_selinux: passed
stage1:testcase_99_ssh_key: waived
-
  command: echo "ssh-rsa AAAAB3NzaC1yc2EAAAABIwAAAQEAtIc6X/1qXsEPjvnPd
  K2nXS3v6wpBTgU6nLFagsaEJ27LtB0b+UpOpagCHxK3LxSYX8JB3g2ns5/WTFXGmltpy
  XnVX2BRLvpX2Yqq5Bh2ykWNu/mwQUa+BuuHOjFZMoG8N6jK3fkUXLjHDfi76xFU7SA9V
  iC7BVTzvBTQuZLyGHjhwLctaPlfD4yBO06npAVGlCyWm3VzX0ivZkxdtVCLd2IjFvwbb
  V3QuUwfWD0W93l0ULvVLst6g2O2AJNkVFS9WKzgjQvsJh1r18rVGrM+vqTB7KrGJLSsg
  UOtC3mC4apigYkP6rxaakpSy95zYrEXxDiSodW7aJAQoqTw5r+waw==
  root.rhts.eng.bos.redhat.com" >>
  /home/cloud-user/.ssh/authorized_keys
  result: failed
  actual: 1
stage1:testcase_61_yum_proxy: passed
stage1:testcase_24_yum_plugin: passed
stage1:testcase_32_ephemeral: passed
stage1:testcase_27_yum_repos: passed
stage1:testcase_31_subscription_management: passed
stage1:testcase_50_yum_package_install: passed
stage2:testcase_37_sshd_bug923996: passed
stage2:testcase_25_uname: passed
stage2:testcase_66_bug1122300_proc_cmdline: passed
stage2:testcase_380_bug1103344_ttySOconf: passed
stage2:testcase_80_no_avc_denials: waived
-
  command: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END
  result: failed
  actual: echo START; grep 'avc:[[:space:]]*denied' /var/log/messages
  /var/log/audit/audit.log | grep -v userdata; echo END  START
  /var/log/messages:Mar  8 09:40:58 ip-10-233-137-25 kernel: type=1400
  audit(1457448046.227:4): avc:  denied  { read } for  pid=557
  comm="hwclock" name="localtime" dev=xvda1 ino=1266
  scontext=system_u:system_r:hwclock_t:s0-s0:c0.c1023
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/messages:Mar  8 09:40:58 ip-10-233-137-25 kernel: type=1400
  audit(1457448053.202:5): avc:  denied  { read } for  pid=870
  comm="date" name="localtime" dev=xvda1 ino=1266
  scontext=system_u:system_r:sysstat_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/messages:Mar  8 09:40:58 ip-10-233-137-25 kernel: type=1400
  audit(1457448053.215:6): avc:  denied  { read } for  pid=871
  comm="date" name="localtime" dev=xvda1 ino=1266
  scontext=system_u:system_r:sysstat_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/messages:Mar  8 09:40:58 ip-10-233-137-25 kernel: type=1400
  audit(1457448053.340:7): avc:  denied  { read } for  pid=869
  comm="sadc" name="localtime" dev=xvda1 ino=1266
  scontext=system_u:system_r:sysstat_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/messages:Mar  8 09:40:58 ip-10-233-137-25 kernel: type=1400
  audit(1457448053.353:8): avc:  denied  { read } for  pid=869
  comm="sadc" name="localtime" dev=xvda1 ino=1266
  scontext=system_u:system_r:sysstat_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/messages:Mar  8 09:40:58 ip-10-233-137-25 kernel: type=1400
  audit(1457448053.364:9): avc:  denied  { read } for  pid=869
  comm="sadc" name="localtime" dev=xvda1 ino=1266
  scontext=system_u:system_r:sysstat_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/messages:Mar  8 09:40:58 ip-10-233-137-25 kernel: type=1400
  audit(1457448057.903:10): avc:  denied  { read } for  pid=1087
  comm="audispd" name="localtime" dev=xvda1 ino=1266
  scontext=system_u:system_r:audisp_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/messages:Mar  8 10:00:46 ip-10-233-137-25 kernel: type=1400
  audit(1457449239.238:4): avc:  denied  { read } for  pid=494
  comm="hwclock" name="localtime" dev=xvda1 ino=1266
  scontext=system_u:system_r:hwclock_t:s0-s0:c0.c1023
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/messages:Mar  8 10:00:46 ip-10-233-137-25 kernel: type=1400
  audit(1457449243.748:5): avc:  denied  { read } for  pid=845
  comm="date" name="localtime" dev=xvda1 ino=1266
  scontext=system_u:system_r:sysstat_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/messages:Mar  8 10:00:46 ip-10-233-137-25 kernel: type=1400
  audit(1457449243.759:6): avc:  denied  { read } for  pid=846
  comm="date" name="localtime" dev=xvda1 ino=1266
  scontext=system_u:system_r:sysstat_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/messages:Mar  8 10:00:46 ip-10-233-137-25 kernel: type=1400
  audit(1457449243.790:7): avc:  denied  { read } for  pid=844
  comm="sadc" name="localtime" dev=xvda1 ino=1266
  scontext=system_u:system_r:sysstat_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/messages:Mar  8 10:00:46 ip-10-233-137-25 kernel: type=1400
  audit(1457449243.804:8): avc:  denied  { read } for  pid=844
  comm="sadc" name="localtime" dev=xvda1 ino=1266
  scontext=system_u:system_r:sysstat_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/messages:Mar  8 10:00:46 ip-10-233-137-25 kernel: type=1400
  audit(1457449243.815:9): avc:  denied  { read } for  pid=844
  comm="sadc" name="localtime" dev=xvda1 ino=1266
  scontext=system_u:system_r:sysstat_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/audit/audit.log:type=AVC msg=audit(1457448198.982:313):
  avc:  denied  { read } for  pid=1930 comm="newaliases"
  name="localtime" dev=xvda1 ino=1266
  scontext=system_u:system_r:sendmail_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/audit/audit.log:type=AVC msg=audit(1457448198.986:314):
  avc:  denied  { read } for  pid=1930 comm="newaliases"
  name="localtime" dev=xvda1 ino=1266
  scontext=system_u:system_r:sendmail_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/audit/audit.log:type=AVC msg=audit(1457448199.747:315):
  avc:  denied  { read } for  pid=2006 comm="pickup" name="localtime"
  dev=xvda1 ino=1266 scontext=system_u:system_r:postfix_pickup_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/audit/audit.log:type=AVC msg=audit(1457448199.750:316):
  avc:  denied  { read } for  pid=2006 comm="pickup" name="localtime"
  dev=xvda1 ino=1266 scontext=system_u:system_r:postfix_pickup_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/audit/audit.log:type=AVC msg=audit(1457448199.961:317):
  avc:  denied  { read } for  pid=2007 comm="qmgr" name="localtime"
  dev=xvda1 ino=1266 scontext=system_u:system_r:postfix_qmgr_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/audit/audit.log:type=AVC msg=audit(1457448199.963:318):
  avc:  denied  { read } for  pid=2007 comm="qmgr" name="localtime"
  dev=xvda1 ino=1266 scontext=system_u:system_r:postfix_qmgr_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/audit/audit.log:type=AVC msg=audit(1457448486.474:1345):
  avc:  denied  { read } for  pid=14024 comm="passwd" name="localtime"
  dev=xvda1 ino=1266
  scontext=unconfined_u:unconfined_r:passwd_t:s0-s0:c0.c1023
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/audit/audit.log:type=AVC msg=audit(1457448496.168:1484):
  avc:  denied  { read } for  pid=1217 comm="dbus-daemon"
  name="localtime" dev=xvda1 ino=1266
  scontext=system_u:system_r:system_dbusd_t:s0-s0:c0.c1023
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/audit/audit.log:type=AVC msg=audit(1457448496.168:1484):
  avc:  denied  { open } for  pid=1217 comm="dbus-daemon"
  name="localtime" dev=xvda1 ino=1266
  scontext=system_u:system_r:system_dbusd_t:s0-s0:c0.c1023
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/audit/audit.log:type=AVC msg=audit(1457448496.169:1485):
  avc:  denied  { getattr } for  pid=1217 comm="dbus-daemon"
  path="/etc/localtime" dev=xvda1 ino=1266
  scontext=system_u:system_r:system_dbusd_t:s0-s0:c0.c1023
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/audit/audit.log:type=AVC msg=audit(1457448601.946:1515):
  avc:  denied  { read } for  pid=14229 comm="date" name="localtime"
  dev=xvda1 ino=1266
  scontext=system_u:system_r:sysstat_t:s0-s0:c0.c1023
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/audit/audit.log:type=AVC msg=audit(1457448601.947:1516):
  avc:  denied  { read } for  pid=14230 comm="date" name="localtime"
  dev=xvda1 ino=1266
  scontext=system_u:system_r:sysstat_t:s0-s0:c0.c1023
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/audit/audit.log:type=AVC msg=audit(1457448601.948:1517):
  avc:  denied  { read } for  pid=14228 comm="sadc" name="localtime"
  dev=xvda1 ino=1266
  scontext=system_u:system_r:sysstat_t:s0-s0:c0.c1023
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/audit/audit.log:type=AVC msg=audit(1457448601.949:1518):
  avc:  denied  { read } for  pid=14228 comm="sadc" name="localtime"
  dev=xvda1 ino=1266
  scontext=system_u:system_r:sysstat_t:s0-s0:c0.c1023
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/audit/audit.log:type=AVC msg=audit(1457448601.949:1519):
  avc:  denied  { read } for  pid=14228 comm="sadc" name="localtime"
  dev=xvda1 ino=1266
  scontext=system_u:system_r:sysstat_t:s0-s0:c0.c1023
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/audit/audit.log:type=AVC msg=audit(1457448601.959:1520):
  avc:  denied  { read } for  pid=14228 comm="sadc" name="localtime"
  dev=xvda1 ino=1266
  scontext=system_u:system_r:sysstat_t:s0-s0:c0.c1023
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/audit/audit.log:type=AVC msg=audit(1457449177.742:1810):
  avc:  denied  { read } for  pid=14598 comm="shutdown"
  name="localtime" dev=xvda1 ino=1266
  scontext=unconfined_u:unconfined_r:shutdown_t:s0-s0:c0.c1023
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/audit/audit.log:type=AVC msg=audit(1457449253.985:13): avc:
  denied  { read } for  pid=1531 comm="pickup" name="localtime"
  dev=xvda1 ino=1266 scontext=system_u:system_r:postfix_pickup_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/audit/audit.log:type=AVC msg=audit(1457449253.987:14): avc:
  denied  { read } for  pid=1531 comm="pickup" name="localtime"
  dev=xvda1 ino=1266 scontext=system_u:system_r:postfix_pickup_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/audit/audit.log:type=AVC msg=audit(1457449253.988:15): avc:
  denied  { read } for  pid=1532 comm="qmgr" name="localtime"
  dev=xvda1 ino=1266 scontext=system_u:system_r:postfix_qmgr_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file
  /var/log/audit/audit.log:type=AVC msg=audit(1457449253.990:16): avc:
  denied  { read } for  pid=1532 comm="qmgr" name="localtime"
  dev=xvda1 ino=1266 scontext=system_u:system_r:postfix_qmgr_t:s0
  tcontext=system_u:object_r:root_t:s0 tclass=file  END
  [root@ip-10-233-137-25 ~]#
  expectation:   START  END
stage2:testcase_141_hostname: waived
-
  command: test -f /root/hostname_text.txt || hostname >
  /root/hostname_text.txt; sync
  result: passed
-
  command: grep -x `hostname` /root/hostname_text.txt
  result: failed
  actual: 1
stage2:testcase_08_memory: passed


Note You need to log in before you can comment on or make changes to this bug.