Merge "Fix TCP HMs on UDP pools with SELinux" into stable/yoga
This commit is contained in:
commit
2851ee970e
@ -17,3 +17,6 @@ enable_selinux_bool () {
|
||||
enable_selinux_bool os_haproxy_enable_nsfs
|
||||
enable_selinux_bool os_haproxy_ping
|
||||
enable_selinux_bool cluster_use_execmem
|
||||
# Allows keepalived to connect to any ports (required by TCP-based HMs on UDP
|
||||
# pools)
|
||||
enable_selinux_bool keepalived_connect_any
|
||||
|
@ -0,0 +1,7 @@
|
||||
---
|
||||
fixes:
|
||||
- |
|
||||
Fixed an SELinux issues with TCP-based health-monitor on UDP pools, some
|
||||
specific monitoring ports were denied by SELinux. The Amphora image now
|
||||
enables the ``keepalived_connect_any`` SELinux boolean that allows
|
||||
connections to any ports.
|
Loading…
x
Reference in New Issue
Block a user