]> git.apps.os.sepia.ceph.com Git - ceph.git/commit
ceph-daemon: do not relabel system directories 31321/head
authorSage Weil <sage@redhat.com>
Fri, 1 Nov 2019 16:01:42 +0000 (11:01 -0500)
committerSage Weil <sage@redhat.com>
Fri, 1 Nov 2019 16:01:42 +0000 (11:01 -0500)
commit0444025aaf559a662882abc49465b5e31a66280d
treec0e186b563787835f75c3602596d2113d14be099
parent728d50f67404bbfce4c86f0fb2da3514be8c8ae1
ceph-daemon: do not relabel system directories

These are shared system directories and should not be relabled for use by
ceph containers.  (Also, trying to relabel /dev prevents the container
from starting, e.g.

# /bin/podman run -it --net=host  --privileged    -v /dev:/dev:z    --entrypoint bash centos
Error: relabel failed "/dev": SELinux relabeling of /dev is not allowed

)

Fixes: https://tracker.ceph.com/issues/42511
Signed-off-by: Sage Weil <sage@redhat.com>
src/ceph-daemon