[Bug 1234621] [SELinux] full relabelling required after booting to recovery/single-user mode
https://bugzilla.suse.com/show_bug.cgi?id=1234621 https://bugzilla.suse.com/show_bug.cgi?id=1234621#c1 Thorsten Kukuk <kukuk@suse.com> changed: What |Removed |Added ---------------------------------------------------------------------------- CC| |kukuk@suse.com --- Comment #1 from Thorsten Kukuk <kukuk@suse.com> --- You need to add "security=selinux" to all boot entries, as the default for Tumbleweed is AppArmor and not SELinux. selinux=1 or enforcing=1 is not necessary, if you did configure /etc/selinux/config correct. And yes, if you did boot the system without SELinux active, you need to relabel with the next "normal" boot. There is a commandline option (autorelabel) to tell the system to do a full relabel for this cases. It is not possible to find out, that you did boot the system with selinux disabled before. -- You are receiving this mail because: You are on the CC list for the bug.
participants (1)
-
bugzilla_noreply@suse.com