Browse Source
With NovaNfsEnabled instance create fails due to wrong default secontext. The default in THT is set to nova_var_lib_t in Ie4fe217bd119b638f42c682d21572547f02f17b2 while system_u:object_r:nfs_t:s0 should have access. The virt_use_nfs boolean, which is turned on by openstack-selinux, should cover this use case. This changes the default to context=system_u:object_r:nfs_t:s0 Change-Id: I2a28462b6f6bc9f8a41a81ea8c65471f05df3b85 Closes-Bug: 1781894changes/13/582913/3
4 changed files with 16 additions and 3 deletions
@ -0,0 +1,13 @@
|
||||
--- |
||||
fixes: |
||||
- | |
||||
Instance create fails due to wrong default secontext with NFS |
||||
|
||||
With NovaNfsEnabled instance create fails due to wrong default |
||||
secontext. The default in THT is set to nova_var_lib_t in |
||||
Ie4fe217bd119b638f42c682d21572547f02f17b2 while |
||||
system_u:object_r:nfs_t:s0 should have access. The virt_use_nfs |
||||
boolean, which is turned on by openstack-selinux, should cover |
||||
this use case. |
||||
|
||||
This changes the default to context=system_u:object_r:nfs_t:s0 |
Loading…
Reference in new issue