Uploaded image for project: 'RHEL'
  1. RHEL
  2. RHEL-106856

Test case failure: /CoreOS/selinux-policy/Regression/bz851289-unbound-not-able-to-bind-to-port-80-despite

Linking RHIVOS CVEs to...Migration: Automation ...SWIFT: POC ConversionSync from "Extern...XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Done
    • Icon: Minor Minor
    • None
    • rhel-9.0.0
    • selinux-policy
    • No
    • Low
    • rhel-se-security
    • 3
    • False
    • False
    • Hide

      None

      Show
      None
    • None
    • None
    • None
    • None
    • Unspecified
    • Unspecified
    • Unspecified
    • None

      https://tcms.engineering.redhat.com/run/441640/
      Fails here consistently:

      ::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::
      ::   bz#1905441
      ::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::
      
      /run/unbound/unbound.control.pipe	system_u:object_r:named_var_run_t:s0
      :: [ 20:20:07 ] :: [   PASS   ] :: Result of matchpathcon /run/unbound/unbound.control.pipe should contain named_var_run_t (Assert: expected 0, got 0)
      :: [ 20:20:07 ] :: [   INFO   ] :: rlSESearchRule: checking rule 'allow named_t named_t : unix_stream_socket { connectto } [ ]'
      FILTERED RULES
      allow named_t named_t:unix_stream_socket { accept append bind connect create getattr getopt ioctl listen lock read setattr setopt shutdown write };
      :: [ 20:20:13 ] :: [   FAIL   ] ::   check permission 'connectto' is present (Assert: '1' should equal '0')
      ::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::
      ::   Duration: 7s
      ::   Assertions: 1 good, 1 bad
      ::   RESULT: FAIL (bz#1905441)
      
      ** bz-1905441 FAIL Score:1
      Uploading resultoutputfile.log .done
      

      BZ#1905441 looks like it was fixed in rhel-8.6 https://errata.devel.redhat.com/advisory/82359, but in TCMS test case history it is stated the the issue is reproducible on rhel-9.0.

              rhn-support-sbroz Stepan Broz
              rhn-support-tcornell Therese Cornell
              Zdenek Pytela Zdenek Pytela
              Therese Cornell Therese Cornell
              Votes:
              0 Vote for this issue
              Watchers:
              8 Start watching this issue

                Created:
                Updated:
                Resolved: