What | Removed | Added |
---|---|---|
Resolution | FIXED | --- |
Status | RESOLVED | REOPENED |
Thanks. I think userspace should not be sensitive to the order of LSMs. The current state is brittle - a user error can cause a failure to boot. AFAIK, the order of LSMs matters for initialization. The kernel carries out initialization early in the boot sequence and before the init process is started. If it's not the userspace component of SELinux then it's probably systemd what should be improved.