Turn selinux back on after cloud-init
After cloud-init has run configuration steps, turn on selinux again for security reasons. Change-Id: I12a5b2ff3e71be39aa84093fce8b1c2b1be9d473 Closes-Bug: 1543308
This commit is contained in:
parent
2d6b4c6cce
commit
cf85c5ac03
@ -2,7 +2,3 @@
|
||||
#!/bin/sh
|
||||
|
||||
setenforce 0
|
||||
|
||||
sed -i '
|
||||
/^SELINUX=/ s/=.*/=permissive/
|
||||
' /etc/selinux/config
|
||||
|
@ -9,3 +9,5 @@ for service in etcd docker kube-apiserver kubelet; do
|
||||
systemctl enable $service
|
||||
systemctl --no-block start $service
|
||||
done
|
||||
|
||||
setenforce 1
|
||||
|
@ -15,3 +15,5 @@ for service in docker kubelet; do
|
||||
systemctl enable $service
|
||||
systemctl --no-block start $service
|
||||
done
|
||||
|
||||
setenforce 1
|
||||
|
@ -2,7 +2,3 @@
|
||||
#!/bin/sh
|
||||
|
||||
setenforce 0
|
||||
|
||||
sed -i '
|
||||
/^SELINUX=/ s/=.*/=permissive/
|
||||
' /etc/selinux/config
|
||||
|
@ -7,3 +7,5 @@ for service in $NODE_SERVICES; do
|
||||
systemctl enable $service
|
||||
systemctl --no-block start $service
|
||||
done
|
||||
|
||||
setenforce 1
|
||||
|
Loading…
Reference in New Issue
Block a user