-
Bug
-
Resolution: Duplicate
-
Normal
-
CentOS Stream 10, rhel-10.0
-
None
-
No
-
Moderate
-
rhel-security-selinux
-
ssg_security
-
None
-
False
-
False
-
-
No
-
None
-
None
-
None
-
Unspecified Release Note Type - Unknown
-
None
What were you trying to do that didn't work?
https://beaker.engineering.redhat.com/jobs/9766810
When install RHEL-10 distribution in beaker, it always print avc denied when boot.
ELinux status: enabled
SELinuxfs mount: /sys/fs/selinux
SELinux root directory: /etc/selinux
Loaded policy name: targeted
Current mode: enforcing
Mode from config file: enforcing
Policy MLS status: enabled
Policy deny_unknown status: allowed
Memory protection checking: actual (secure)
Max kernel policy version: 33
selinux-policy-40.13.8-1.el10.noarch
time->Thu Aug 22 15:58:00 2024
type=AVC msg=audit(1724356680.054:40): avc: denied { signull } for pid=1154 comm="systemd-journal" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:udev_t:s0-s0:c0.c1023 tclass=process permissive=0
time->Thu Aug 22 15:58:00 2024
type=AVC msg=audit(1724356680.054:41): avc: denied { signull } for pid=1154 comm="systemd-journal" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:auditd_t:s0 tclass=process permissive=0
time->Thu Aug 22 15:58:00 2024
type=AVC msg=audit(1724356680.054:42): avc: denied { signull } for pid=1154 comm="systemd-journal" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:udev_t:s0-s0:c0.c1023 tclass=process permissive=0
time->Thu Aug 22 15:58:00 2024
type=AVC msg=audit(1724356680.054:43): avc: denied { signull } for pid=1154 comm="systemd-journal" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:NetworkManager_t:s0 tclass=process permissive=0
time->Thu Aug 22 15:58:00 2024
type=AVC msg=audit(1724356680.054:44): avc: denied { signull } for pid=1154 comm="systemd-journal" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:irqbalance_t:s0 tclass=process permissive=0
Please provide the package NVR for which bug is seen:
6.11.0-0.rc3.19.el10.x86_64
selinux-policy-40.13.8-1.el10.noarch
How reproducible:
100%
Steps to reproduce
- install rhel10 and boot