Selinux load_policy command on inactive partition is loading policy on active partition

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hi,

We have done changes in our Centos7.4 to disable the unconfined user from our code. We have created an iso in which we have replaced unconfined with sysadm and we are performing an upgrade using the new iso. 
After upgrade current partition stop working. It started expecting policies for unconfined when we perform reboot things started working fine again. 
We are suspecting some issues with this command "load_policy -qi" when this command is being executed on partB in permissive mode and after we move the system to enforcing mode. It starts giving denials for unconfined. 

Can you explain what exactly load_policy do? 
Does it load the policies for all the partitions of the system?


Regards,
Shagun
_______________________________________________
Selinux mailing list
Selinux@xxxxxxxxxxxxx
To unsubscribe, send email to Selinux-leave@xxxxxxxxxxxxx.
To get help, send an email containing "help" to Selinux-request@xxxxxxxxxxxxx.

[Index of Archives]     [Selinux Refpolicy]     [Linux SGX]     [Fedora Users]     [Fedora Desktop]     [Yosemite Photos]     [Yosemite Camping]     [Yosemite Campsites]     [KDE Users]     [Gnome Users]

  Powered by Linux