]> git-server-git.apps.pok.os.sepia.ceph.com Git - ceph.git/commit
qa: allowlist bpf podman denials on Rocky 10
authorDavid Galloway <david.galloway@ibm.com>
Mon, 26 Jan 2026 17:05:01 +0000 (12:05 -0500)
committerNitzan Mordechai <nmordech@ibm.com>
Thu, 23 Apr 2026 10:48:11 +0000 (10:48 +0000)
commit329a82f46bb318dad097d12e1cb79a9f557025be
tree52fb89a2bc05530f4bb9215f8558afaa8fa5bc79
parent63a1a952ccebace63da0d0eec8561699f4b2f7bd
qa: allowlist bpf podman denials on Rocky 10

Rocky Linux 10 logs SELinux AVCs for systemd BPF operations during container startup due to incomplete SELinux policy coverage. These AVCs occur in permissive mode, are reproducible without Ceph, and do not indicate functional failure. Tests should ignore this specific AVC class while continuing to fail on enforced denials.

Signed-off-by: David Galloway <david.galloway@ibm.com>
(cherry picked from commit 25411d57c69fdebbf85c4cc4d6bb375e1e2a614a)
qa/distros/all/rocky_10.yaml