Bug #18284
closedforeman-selinux is conflicting with container-selinux
Description
Cloned from https://bugzilla.redhat.com/show_bug.cgi?id=1414821
Description of problem:
foreman-selinux is conflicting with container-selinux
If you install foreman-selinux first then container-selinux module load fails and vice-versa. If you install container-selinux first then foreman-selinux module load fails.
Version-Release number of selected component (if applicable):
@Sat6.2.7
(generally all sat version, but lets stick to 6.2)
foreman-selinux-1.11.0.2-1.el7sat
How reproducible:
Always on RHEL7.3
Steps to Reproduce:
1. Install docker (with its container-selinux)
2. Install Satellite (with its foreman-selinux)
- yum install foreman-selinux
...
Re-declaration of type docker_port_t <<< this is the issue
Failed to create node
Bad type declaration at /etc/selinux/targeted/tmp/modules/400/foreman/cil:27
OSError: Error
ValueError: Type elasticsearch_port_t is invalid, must be a port type
warning: %post(foreman-selinux-1.11.0.2-1.el7sat.noarch) scriptlet failed, exit status 1
Non-fatal POSTIN scriptlet failure in rpm package foreman-selinux-1.11.0.2-1.el7sat.noarch
- semanage fcontext -l | grep foreman
/opt/theforeman/tfm/root = /
all? most? of foreman selinux types are missing due to conflict
Actual results:
conflicting selinux modules
Expected results:
modules are able to cope together
Updated by Dominic Cleal over 7 years ago
- Category set to Compute resources
- Assignee deleted (
Lukas Zapletal)
Updated by The Foreman Bot over 7 years ago
- Status changed from New to Ready For Testing
- Assignee set to Daniel Lobato Garcia
- Pull request https://github.com/theforeman/foreman-selinux/pull/66 added
Updated by The Foreman Bot about 7 years ago
- Pull request https://github.com/theforeman/foreman-selinux/pull/68 added
Updated by Daniel Lobato Garcia about 7 years ago
- Translation missing: en.field_release set to 287
Updated by Lukas Zapletal about 7 years ago
- Status changed from Ready For Testing to Closed
- % Done changed from 0 to 100
Applied in changeset c1669217afa4f641831e1f9a9dcb653a7263236f.
Updated by The Foreman Bot almost 7 years ago
- Pull request https://github.com/theforeman/foreman-selinux/pull/72 added