Cathy,Jiri, Based on comment 13(specifically On the other hand, the lsm= argument makes it possible for users to get it wrong and end up with a system that does not boot, e.g. passing lsm=bpf,selinux.) , I am a little confused. can you please confirm that I need to update to : lsm=selinux,bpf selinux=1