Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Setting sebool container_manage_cgroup #74

Open
debianmaster opened this issue Oct 4, 2018 · 0 comments
Open

Setting sebool container_manage_cgroup #74

debianmaster opened this issue Oct 4, 2018 · 0 comments

Comments

@debianmaster
Copy link
Owner

debianmaster commented Oct 4, 2018

vi roles/openshift_node/tasks/selinux_container_cgroup.yml

add when condition if selinux is disabled.

# Required in some selinux policy versions see
# https://bugzilla.redhat.com/show_bug.cgi?id=1587825
# https://bugzilla.redhat.com/show_bug.cgi?id=1549765
- name: Setting sebool container_manage_cgroup
  seboolean:
    name: container_manage_cgroup
    state: no
    persistent: yes
  when:
  - ansible_selinux
  - ansible_selinux.status == 'enabled'
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant