Lustre mount with SELinux in enforcing causes avc denial messages
Issue
-
With SELinux in enforcing mode, lustre filesystems are mounted and labelled as below.
system_u:object_r:unlabeled_t -
This causes various access denied errors, such as,
avc: denied { associate } for pid=7360 comm="touch" name="xxxx" scontext=user_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:fs_t:s0 tclass=filesystem
Environment
- Red Hat Enterprise Linux 5
- Red Hat Enterprise Linux 8
- selinux-policy-targeted
- selinux-policy
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.