Red Hat Bugzilla – Bug 133380
rc.sysinit needs extra parameter when running restorecon for SE Linux
Last modified: 2014-03-16 22:48:36 EDT
From Bugzilla Helper:
User-Agent: Mozilla/5.0 (compatible; Konqueror/3.3; Linux) (KHTML, like Gecko)
Description of problem:
/sbin/restorecon /dev/* 2> /dev/null
The above line is currently in rc.sysinit to label tmpfs /dev. It needs to be replaced with the below line to allow LVM systems to boot with strict policy.
/sbin/restorecon /dev/* /dev/*/* 2> /dev/null
Version-Release number of selected component (if applicable):
Steps to Reproduce:
Install the strict policy on a system with LVM root and watch it fail to boot in enforcing mode.
/sbin/restorecon /dev/* /dev/.udev.tdb /dev/*/* 2> /dev/null
Actually it should be the above. Sorry, I fixed one bug only to
Also don't bother testing the fix, with the current policy in
rawhide it probably won't work anyway (any situation in which it's
needed things won't work).
Fixed in CVS.