Description of problem: Version-Release number of selected component (if applicable): How reproducible: Steps to Reproduce: 1. 2. 3. Actual results: Expected results: Additional info:
At the moment it is not possible to set the SELinux context on a mounted Gluster Volume. We intend to have this functionality added to the Gluster core, and from there on add support to additional layers (FUSE, Labelled NFS, ...). More details are listed in a conversation on the Gluster developers list: http://thread.gmane.org/gmane.comp.file-systems.gluster.devel/13071
REVIEW: http://review.gluster.org/13762 ([WIP]SELinux : implementation of SELinux translator) posted (#1) for review on master by Manikandan Selvaganesh (mselvaga)
REVIEW: http://review.gluster.org/13762 ([WIP]SELinux : implementation of SELinux translator) posted (#2) for review on master by Manikandan Selvaganesh (mselvaga)
REVIEW: http://review.gluster.org/13762 ([WIP]SELinux : implementation of SELinux translator) posted (#3) for review on master by Manikandan Selvaganesh (mselvaga)
Moving out of glusterfs-3.8, we passed the branching and changes were not ready for inclusion.
REVIEW: http://review.gluster.org/13762 ([WIP]SELinux : implementation of SELinux translator) posted (#4) for review on master by Manikandan Selvaganesh (mselvaga)
REVIEW: http://review.gluster.org/13762 (SELinux : implementation of SELinux translator) posted (#5) for review on master by jiffin tony Thottan (jthottan)
(In reply to Niels de Vos from comment #1) > At the moment it is not possible to set the SELinux context on a mounted > Gluster Volume. We intend to have this functionality added to the Gluster > core, and from there on add support to additional layers (FUSE, Labelled > NFS, ...). > > More details are listed in a conversation on the Gluster developers list: > http://thread.gmane.org/gmane.comp.file-systems.gluster.devel/13071 As Gmane is down, this link is defunct, so here is another link to the same mail: http://lists.gluster.org/pipermail/gluster-devel/2015-December/047262.html
REVIEW: https://review.gluster.org/16616 (libglusterfs: add dict_rename_key()) posted (#1) for review on master by Niels de Vos (ndevos)
REVIEW: https://review.gluster.org/13762 (SELinux : implementation of SELinux translator) posted (#6) for review on master by Niels de Vos (ndevos)
REVIEW: https://review.gluster.org/16616 (libglusterfs: add dict_rename_key()) posted (#2) for review on master by Niels de Vos (ndevos)
REVIEW: https://review.gluster.org/16617 (core: add op-version for GlusterFS 3.11) posted (#1) for review on master by Niels de Vos (ndevos)
REVIEW: https://review.gluster.org/13762 (SELinux : implementation of SELinux translator) posted (#7) for review on master by Niels de Vos (ndevos)
REVIEW: https://review.gluster.org/16616 (libglusterfs: add dict_rename_key()) posted (#3) for review on master by Niels de Vos (ndevos)
REVIEW: https://review.gluster.org/16617 (core: add op-version for GlusterFS 3.11) posted (#2) for review on master by Niels de Vos (ndevos)
REVIEW: https://review.gluster.org/16616 (libglusterfs: add dict_rename_key()) posted (#4) for review on master by Niels de Vos (ndevos)
REVIEW: https://review.gluster.org/16616 (libglusterfs: add dict_rename_key()) posted (#5) for review on master by Niels de Vos (ndevos)
REVIEW: https://review.gluster.org/16616 (libglusterfs: add dict_rename_key()) posted (#6) for review on master by Niels de Vos (ndevos)
COMMIT: https://review.gluster.org/16616 committed in master by Jeff Darcy (jeff.us) ------ commit 4c3aa910e7913c34db24f864a33dfb6d1e0234a4 Author: Manikandan Selvaganesh <mselvaga> Date: Tue Feb 14 17:50:27 2017 +0100 libglusterfs: add dict_rename_key() The dict_rename_key() function will be used for converting the "security.selinux" xattr to "trusted.gluster.selinux" in the upcoming SELinux xlator. BUG: 1318100 Change-Id: Ic5d0b9127e2c360d355f02e200a820597e83fa2c Signed-off-by: Manikandan Selvaganesh <mselvaga> Signed-off-by: Jiffin Tony Thottan <jthottan> [ndevos: split from change Id8916bd8e064ccf74ba86225ead95f86dc5a1a25] Reviewed-on: https://review.gluster.org/16616 Reviewed-by: Niels de Vos <ndevos> Tested-by: Niels de Vos <ndevos> Smoke: Gluster Build System <jenkins.org> NetBSD-regression: NetBSD Build System <jenkins.org> CentOS-regression: Gluster Build System <jenkins.org> Reviewed-by: Jeff Darcy <jeff.us>
REVIEW: https://review.gluster.org/13762 (SELinux : implementation of SELinux translator) posted (#8) for review on master by jiffin tony Thottan (jthottan)
REVIEW: https://review.gluster.org/13762 (SELinux : implementation of SELinux translator) posted (#9) for review on master by jiffin tony Thottan (jthottan)
REVIEW: https://review.gluster.org/13762 (SELinux : implementation of SELinux translator) posted (#10) for review on master by jiffin tony Thottan (jthottan)
COMMIT: https://review.gluster.org/13762 committed in master by Niels de Vos (ndevos) ------ commit 6484558c7502e5afe1c96081dbe329ca5d9cb7e2 Author: Manikandan Selvaganesh <mselvaga> Date: Wed Mar 16 21:37:22 2016 +0530 SELinux : implementation of SELinux translator The patch implement a part of SELinux translator to support setting SELinux contexts on files in a glusterfs volume. URL: https://github.com/gluster/glusterfs-specs/blob/master/accepted/SELinux-client-support.md Change-Id: Id8916bd8e064ccf74ba86225ead95f86dc5a1a25 BUG: 1318100 Fixes : #55 Signed-off-by: Manikandan Selvaganesh <mselvaga> Signed-off-by: Jiffin Tony Thottan <jthottan> Signed-off-by: Niels de Vos <ndevos> Reviewed-on: https://review.gluster.org/13762 Smoke: Gluster Build System <jenkins.org> NetBSD-regression: NetBSD Build System <jenkins.org> CentOS-regression: Gluster Build System <jenkins.org> Reviewed-by: Manikandan Selvaganesh <manikandancs333> Reviewed-by: Atin Mukherjee <amukherj>
This bug is getting closed because a release has been made available that should address the reported issue. In case the problem is still not fixed with glusterfs-3.11.0, please open a new bug report. glusterfs-3.11.0 has been announced on the Gluster mailinglists [1], packages for several distributions should become available in the near future. Keep an eye on the Gluster Users mailinglist [2] and the update infrastructure for your distribution. [1] http://lists.gluster.org/pipermail/announce/2017-May/000073.html [2] https://www.gluster.org/pipermail/gluster-users/
This bug is getting closed because a release has been made available that should address the reported issue. In case the problem is still not fixed with glusterfs-3.12.0, please open a new bug report. glusterfs-3.12.0 has been announced on the Gluster mailinglists [1], packages for several distributions should become available in the near future. Keep an eye on the Gluster Users mailinglist [2] and the update infrastructure for your distribution. [1] http://lists.gluster.org/pipermail/announce/2017-September/000082.html [2] https://www.gluster.org/pipermail/gluster-users/