Skip to content

lsm: Relabel unlabeled_t contexts - #2429

Closed
jmarrero wants to merge 1 commit into
bootc-dev:mainfrom
jmarrero:fix-unlabeled-selinux-context
Closed

lsm: Relabel unlabeled_t contexts#2429
jmarrero wants to merge 1 commit into
bootc-dev:mainfrom
jmarrero:fix-unlabeled-selinux-context

Conversation

@jmarrero

@jmarrero jmarrero commented Sep 1, 2026

Copy link
Copy Markdown
Contributor

The final physical-root labeling pass currently skips any path with a security.selinux xattr, including paths explicitly carrying the unusable unlabeled_t type. Treat that type like a missing label so the target policy replaces it while preserving other existing OSTree labels.

The final physical-root labeling pass currently skips any path with a
security.selinux xattr, including paths explicitly carrying the
unusable unlabeled_t type. Treat that type like a missing label so
the target policy replaces it while preserving other existing OSTree
labels.

Signed-off-by: Joseph Marrero Corchado <jmarrero@redhat.com>
@jmarrero
jmarrero requested a review from cgwalters September 1, 2026 17:20
@bootc-bot
bootc-bot Bot requested a review from ckyrouac September 1, 2026 17:21
@cgwalters

Copy link
Copy Markdown
Collaborator

This is a duplicate of #2368

@cgwalters cgwalters closed this Sep 1, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants