Running the collectd "memcached" plugin results in an AVC denial: type=AVC msg=audit(1491740935.098:499216): avc: denied { name_connect } for pid=503052 comm="reader#3" dest=11211 scontext=system_u:system_r:collectd_t:s0 tcontext=system_u:object_r:memcache_port_t:s0 tclass=tcp_socket This connection should be allowed.
This bugzilla has been removed from the release and needs to be reviewed and Triaged for another Target Release.
setsebool -P collectd_tcp_network_connect = on should fix the issue.
openstack-selinux-0.8.6-2.el7ost.noarch [root@overcloud-controller-0 heat-admin]# getsebool -a | grep collectd collectd_tcp_network_connect --> on
Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHEA-2017:1245