Red Hat Bugzilla – Bug 1465824
RPM macros for Independent Product Policy need improvements
Last modified: 2018-04-10 08:33:50 EDT
The echo vs. /bin/echo issue is fixed now, but ... the selinux_modules_uninstall macro is able to take [-s <policytype>] as parameter, but semodule always removes the policy module from current policy store. If selinux_modules_uninstall macro was executed under targeted policy with "-s mls" it would remove the policy module from targeted policy store but it would leave the policy module in the mls store.
After discussion with Lukas Vrabec, we agreed that this bug will be switched to VERIFIED and that following issue will be addressed in a new bug: The selinux_modules_uninstall macro is able to take [-s <policytype>] as parameter, but semodule always removes the policy module from current policy store. If selinux_modules_uninstall macro was executed under targeted policy with "-s mls" it would remove the policy module from targeted policy store but it would leave the policy module in the mls store.
The new bug is BZ#1546664.
Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHBA-2018:0763