Uploaded image for project: 'RHEL'
  1. RHEL
  2. RHEL-68481

rhc-system-role fails with error: [Errno 1] Operation not permitted: '/etc/pki/consumer/key.pem

    • selinux-policy-40.13.17-1.el10
    • No
    • Moderate
    • 1
    • rhel-sst-security-selinux
    • ssg_security
    • 20
    • 1
    • False
    • Hide


    • No
    • SELINUX 241127 - 241218
    • Unspecified Release Note Type - Unknown
    • None

      What were you trying to do that didn't work?

      Register a system using the Ansible rhc-system-role.

      What is the impact of this issue to you?

      The system cannot be registered to RHSM using tooling that communicates with rhsmcertd.

      Please provide the package NVR for which the bug is seen:

      I believe this is present in selinux-policy-40.13.13-1.el10

      How reproducible is this bug?:


      Steps to reproduce

      1. Create a RHEL 10 machine
      2. Run the attached playbook to register the system using an Ansible role rhc-system-role.yaml

      Expected results

      The playbook should succeed.

      Actual results

      The playbook exits with an error:

      FAILED! => {"changed": false, "msg": "Failed to register with 'subscription.rhsm.stage.redhat.com': com.redhat.RHSM1.Error: {\"exception\": \"PermissionError\", \"severity\": \"error\", \"message\": \"[Errno 1] Operation not permitted: '/etc/pki/consumer/key.pem'\"}"}

      Additional Information

      This was fixed via a PR to upstream project in October. To fix this, that PR needs to be back-ported into c10s.

              rhn-support-zpytela Zdenek Pytela
              ldupont@redhat.com Link Dupont
              Zdenek Pytela Zdenek Pytela
              Milos Malik Milos Malik
              0 Vote for this issue
              10 Start watching this issue
