New F40 selinux-policy build
This update's test gating status has been changed to 'waiting'.
This update has been submitted for testing by zpytela.
This update's test gating status has been changed to 'passed'.
This update has been pushed to testing.
This update can be pushed to stable now if the maintainer wishes
As explained in this Bugzilla comment, this update is removing the lock permission for the krb5kdc_t processes. This is breaking MIT krb5 KDC:
lock
type=AVC msg=audit(1710509353.206:154): avc: denied { lock } for pid=857 comm="krb5kdc" path="/var/kerberos/krb5kdc/principal.kadm5.lock" dev="vda2" ino=262657 scontext=system_u:system_r:krb5kdc_t:s0 tcontext=unconfined_u:object_r:krb5kdc_principal_t:s0 tclass=file permissive=0
Bodhi is disabling automatic push to stable due to negative karma. The maintainer may push manually if they determine that the issue is not severe.
This update has been obsoleted by selinux-policy-40.15-1.fc40.
Please login to add feedback.
Confirm request to re-trigger tests.
This update's test gating status has been changed to 'waiting'.
This update has been submitted for testing by zpytela.
This update's test gating status has been changed to 'waiting'.
This update's test gating status has been changed to 'passed'.
This update has been pushed to testing.
This update can be pushed to stable now if the maintainer wishes
As explained in this Bugzilla comment, this update is removing the
lock
permission for the krb5kdc_t processes. This is breaking MIT krb5 KDC:Bodhi is disabling automatic push to stable due to negative karma. The maintainer may push manually if they determine that the issue is not severe.
This update has been obsoleted by selinux-policy-40.15-1.fc40.