Details
-
Improvement
-
Resolution: Fixed
-
Minor
-
None
-
15510
Description
The aim is to be able to enforce SELinux security policies on Lustre from SELinux-enabled clients.
It requires to properly initiate file security context on client side, and store it on server side via extended attribute.
Attachments
Issue Links
- is blocked by
-
LU-6784 Defects in SELinux support
-
- Resolved
-
- is related to
-
LUDOC-335 Documentation for SELinux Feature
-
- Open
-
-
LU-8654 obd_connect_data handling must account for clients that send obd_connect_data_v1
-
- Resolved
-
-
LU-9193 Multiple hangs observed with many open/getattr
-
- Resolved
-
-
LU-6950 Lustre mount throws away SELinux context options
-
- Resolved
-
-
LU-7417 Permission Denied on enforcing SElinux on Client
-
- Closed
-
Oleg Drokin (oleg.drokin@intel.com) merged in patch http://review.whamcloud.com/19971/
Subject:
LU-5560security: send file security context for createsProject: fs/lustre-release
Branch: master
Current Patch Set:
Commit: 4ea24bdabb2b318721605bd185c32bbc1e9bc924