Merge "Fix TCP HMs on UDP pools with SELinux" into stable/yoga
This commit is contained in:
commit
2851ee970e
@ -17,3 +17,6 @@ enable_selinux_bool () {
|
|||||||
enable_selinux_bool os_haproxy_enable_nsfs
|
enable_selinux_bool os_haproxy_enable_nsfs
|
||||||
enable_selinux_bool os_haproxy_ping
|
enable_selinux_bool os_haproxy_ping
|
||||||
enable_selinux_bool cluster_use_execmem
|
enable_selinux_bool cluster_use_execmem
|
||||||
|
# Allows keepalived to connect to any ports (required by TCP-based HMs on UDP
|
||||||
|
# pools)
|
||||||
|
enable_selinux_bool keepalived_connect_any
|
||||||
|
@ -0,0 +1,7 @@
|
|||||||
|
---
|
||||||
|
fixes:
|
||||||
|
- |
|
||||||
|
Fixed an SELinux issues with TCP-based health-monitor on UDP pools, some
|
||||||
|
specific monitoring ports were denied by SELinux. The Amphora image now
|
||||||
|
enables the ``keepalived_connect_any`` SELinux boolean that allows
|
||||||
|
connections to any ports.
|
Loading…
Reference in New Issue
Block a user