stable

selinux-policy-42.5-1.fc42

FEDORA-2025-dde3c4a0f1 created by zpytela 7 months ago for Fedora 42

New F42 selinux-policy build

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2025-dde3c4a0f1

This update has been submitted for testing by zpytela.

7 months ago

This update's test gating status has been changed to 'waiting'.

7 months ago

This update's test gating status has been changed to 'waiting'.

7 months ago

This update's test gating status has been changed to 'passed'.

7 months ago
User Icon nixuser commented & provided feedback 7 months ago
karma

Seems to be working fine.

This update has been pushed to testing.

7 months ago
User Icon sixpack13 commented & provided feedback 7 months ago

I can't really say if it relabels the filesystem. all I can say is, that the box boots twice with /.autorelabel and that /.autorelabel is removed afterwards.

how could one check if relabeling is working ? all I know is: sudo journalctl -b0|grep -i relabel => Aug 11 04:04:44 obelix.fritz.box systemd[1]: Relabeled /dev/, /dev/shm/, /run/ in 6.741ms. Aug 11 04:04:45 obelix.fritz.box systemd[1]: selinux-autorelabel-mark.service - Mark the need to relabel after reboot was skipped because of an unmet condition check (ConditionSecurity=!selinux).

ideas ?

User Icon bojan commented & provided feedback 7 months ago
karma

Relabeling works again. journalctl -b -1 -g relabel -l --no-pager

BZ#2387134 selinux relabel does not work anymore

This update can be pushed to stable now if the maintainer wishes

7 months ago
User Icon filiperosset commented & provided feedback 7 months ago
karma

no regressions noted

User Icon geraldosimiao commented & provided feedback 7 months ago
karma

in general it works fine, but I'm still having issues with VMs (SELinux is preventing rpc-virtqemud from accessing or writing to the file...)
I also have this message at log:

 systemd[1]: selinux-autorelabel-mark.service - Mark the need to relabel after reboot was skipped because of an unmet condition check (ConditionSecurity=!selinux).
User Icon nathan95 commented & provided feedback 7 months ago
karma

ok for me

This update has been submitted for stable by bodhi.

7 months ago
User Icon zpytela commented & provided feedback 7 months ago

@sixpack13 try this:

cp -a /usr/sbin/agetty /usr/sbin/agetty.tmp

restorecon -vn /usr/sbin/agetty.tmp

Would relabel /usr/bin/agetty.tmp from system_u:object_r:getty_exec_t:s0 to system_u:object_r:bin_t:s0

fixfiles -F onboot

systemctl reboot

restorecon -vn /usr/sbin/agetty.tmp

rm /usr/sbin/agetty.tmp

User Icon zpytela commented & provided feedback 7 months ago

@geraldosimiao There was no virtqemud-related change in the last buid

User Icon sixpack13 commented & provided feedback 7 months ago
karma

@zpytela

thanks it seems to work now: Aug 11 17:18:59 obelix.fritz.box systemd[1]: Starting selinux-autorelabel.service - Relabel all filesystems...

BZ#2387134 selinux relabel does not work anymore
User Icon geraldosimiao commented & provided feedback 7 months ago

@zpytela yeah, this regression started since the last policy upgrade.

This update has been pushed to stable.

7 months ago
User Icon zpytela commented & provided feedback 7 months ago

@geraldosimiao please file a bz, I am not aware of any problem which could have been added by the last build


Please log in to add feedback.

Metadata
Type
bugfix
Severity
medium
Karma
6
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-2
Stable by Karma
5
Stable by Time
14 days
Dates
submitted
7 months ago
in testing
7 months ago
in stable
7 months ago
approved
7 months ago
BZ#2371297 systemd-networkd: DHCPv4 server: Failed to save leases, ignoring: Permission denied
0
0
BZ#2374337 On boot SELinux denies certain actions of ostree & bootupctl
0
0
BZ#2386477 SELinux is preventing pool-1 from 'read' accesses on the file no-stub-resolv.conf.
0
0
BZ#2387134 selinux relabel does not work anymore
0
2

Automated Test Results