selinux: default to permissive
The disable-selinux role has been renamed to selinux and now supports setting desired state. Previously Kayobe was defaulting to disabling and rebooted the host - to avoid audit logs filling up. This change allows operators to define desired SELinux state and defaults to permissive - to adhere to those site policies that require SELinux to be at least in permissive state. Change-Id: I42933b0b7d55c69c9f6992e331fafb2e6c42d4d1
Showing
- ansible/infra-vm-host-configure.yml 1 addition, 1 deletionansible/infra-vm-host-configure.yml
- ansible/overcloud-host-configure.yml 1 addition, 1 deletionansible/overcloud-host-configure.yml
- ansible/roles/selinux/defaults/main.yml 8 additions, 2 deletionsansible/roles/selinux/defaults/main.yml
- ansible/roles/selinux/tasks/main.yml 54 additions, 0 deletionsansible/roles/selinux/tasks/main.yml
- ansible/seed-host-configure.yml 1 addition, 1 deletionansible/seed-host-configure.yml
- ansible/selinux.yml 9 additions, 0 deletionsansible/selinux.yml
- doc/source/configuration/reference/hosts.rst 6 additions, 5 deletionsdoc/source/configuration/reference/hosts.rst
- doc/source/configuration/scenarios/all-in-one/overcloud.rst 6 additions, 6 deletionsdoc/source/configuration/scenarios/all-in-one/overcloud.rst
- kayobe/cli/commands.py 3 additions, 3 deletionskayobe/cli/commands.py
- playbooks/kayobe-infra-vm-base/overrides.yml.j2 0 additions, 4 deletionsplaybooks/kayobe-infra-vm-base/overrides.yml.j2
- playbooks/kayobe-overcloud-base/overrides.yml.j2 0 additions, 4 deletionsplaybooks/kayobe-overcloud-base/overrides.yml.j2
- playbooks/kayobe-overcloud-upgrade-base/overrides.yml.j2 2 additions, 0 deletionsplaybooks/kayobe-overcloud-upgrade-base/overrides.yml.j2
- playbooks/kayobe-seed-base/overrides.yml.j2 0 additions, 4 deletionsplaybooks/kayobe-seed-base/overrides.yml.j2
- playbooks/kayobe-seed-upgrade-base/overrides.yml.j2 2 additions, 0 deletionsplaybooks/kayobe-seed-upgrade-base/overrides.yml.j2
- playbooks/kayobe-seed-vm-base/overrides.yml.j2 0 additions, 4 deletionsplaybooks/kayobe-seed-vm-base/overrides.yml.j2
- releasenotes/notes/rename-disable-selinux-9053ff36792066bc.yaml 18 additions, 0 deletions...enotes/notes/rename-disable-selinux-9053ff36792066bc.yaml
Loading
Please register or sign in to comment