Bug 525712 - cobbler marks newly created kernel images(tfpd) with wrong selinux fcontext
Summary: cobbler marks newly created kernel images(tfpd) with wrong selinux fcontext
Keywords:
Status: CLOSED NOTABUG
Alias: None
Product: Fedora
Classification: Fedora
Component: cobbler
Version: 11
Hardware: x86_64
OS: Linux
low
medium
Target Milestone: ---
Assignee: Michael DeHaan
QA Contact: Fedora Extras Quality Assurance
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2009-09-25 11:00 UTC by lejeczek
Modified: 2009-09-25 13:32 UTC (History)
1 user (show)

Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Clone Of:
Environment:
Last Closed: 2009-09-25 13:32:14 UTC
Type: ---
Embargoed:


Attachments (Terms of Use)

Description lejeczek 2009-09-25 11:00:05 UTC
Description of problem:
my(which I believe is a default setup) config is as follow:
tftpd keeps its content in:
/var/lib/tftpboot
when cobbler creates new distro/profile it correctly puts and build a path up to:
/var/lib/tftpboot/images/$_distro_names  -- up to here fcontext is: public_content_t
but then, files in all this dirs have this context: httpd_sys_content_t -- and this is where tftpd fails being not able to serve the files
I believe mainstream policy has correct context for this content as `restorecon` fixes it with: public_content_t

Version-Release number of selected component (if applicable):
cobbler-1.6.6-1.fc11.x86_64

How reproducible:


Steps to Reproduce:
1.
2.
3.
  
Actual results:


Expected results:


Additional info:

Comment 1 Michael DeHaan 2009-09-25 13:32:14 UTC
cobbler check lists instructions you must perform to set up the SELinux rules so context is applied correctly for newly created files.

It seems you did not perform those steps yet?


Note You need to log in before you can comment on or make changes to this bug.