LinuxQuestions.org
Register a domain and help support LQ
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Software > Linux - Kernel
User Name
Password
Linux - Kernel This forum is for all discussion relating to the Linux kernel.

Notices

Reply
 
LinkBack Search this Thread
Old 01-26-2009, 12:20 PM   #1
legcard
Member
 
Registered: May 2007
Posts: 33

Rep: Reputation: 15
rhel 4 - new kernel 2.6.27-10 - now SELinux causes kernel panic


After a lot of research and flailing, I have updated/compiled a new kernel (2.6.27.10) on one of my RHEL 4.6 test servers. Bugs in kernel 2.6. 25 and below were reason for kernel upgrade.

After successful rebuild, and everything works after a reboot, I decided to turn on SELinux (enforcing - targeted). I editted the /etc/selinux/config file for that. We had policy.18 in /etc/selinux/targeted/policy. Rebooted.

I got a kernel panic: policy not loaded.

I had specifically not asked for SELinux (during xconfig) as 2.6.27-10 offers policy.19 and I had learned that RHEL 4 only works with policy.18.

So I got an selinux-policy-targeted.1.17.30-2.150.el4.rpm from RHN and installed that after doing a rpm -e selinux-policy-targeted. I installed (rpm -ivh) the new copy of policy.18 and still got the panic. If I put it in permissive mode, it boots ok. Hmm, I need enforcing.

I thought that maybe I needed to compile the policy so I downloaded the src (selinux-policy-targeted.1.17.30-2.150.el4.src.rpm)

rpm -ivh --replacepkgs selinux-policy-targeted.1.17.30-2.150.el4.src.rpm

and got several errors about missing brewbuild user and brewbuilder group ...using root and then got the 100%.

I went to /etc/selinux/targeted/policy expecting to find a src directory. No source. And an rpm -q says that selinux-policy-targeted is not loaded. Huh? /selinux exists but is empty. There is no /etc/selinux/sestatus.conf file as described in man pages. Did a "find / -name src" and found only known sources. Where did it put this so-called source. And maybe I could just load a binary source (vice compile) but it kernel panics for binary policy files, too.

I would appreciate any advice about getting past this "policy not loaded" error.

Last edited by legcard; 01-26-2009 at 12:47 PM.
 
Old 02-05-2009, 04:36 PM   #2
unSpawn
Moderator
 
Registered: May 2001
Posts: 26,543
Blog Entries: 51

Rep: Reputation: 2606Reputation: 2606Reputation: 2606Reputation: 2606Reputation: 2606Reputation: 2606Reputation: 2606Reputation: 2606Reputation: 2606Reputation: 2606Reputation: 2606
Quote:
Originally Posted by legcard View Post
I had specifically not asked for SELinux (during xconfig)
If you compile the kernel with all or one of SE Linux options, CONFIG_AUDIT or XATTRs missing (that si, if I understand your post correctly), then I can't understand why loading any policy into such a kernel should work?
 
Old 02-05-2009, 04:56 PM   #3
anomie
Senior Member
 
Registered: Nov 2004
Location: Texas
Distribution: RHEL, Scientific Linux, Debian, Fedora, FreeBSD
Posts: 3,925
Blog Entries: 5

Rep: Reputation: Disabled
@legcard: You downloaded / compiled / installed a vanilla kernel or what? Is there a reason you are still not using up2date?
 
Old 02-09-2009, 08:09 PM   #4
slimm609
Member
 
Registered: May 2007
Location: Chas, SC
Distribution: slackware, gentoo, fedora, LFS, sidewinder G2, solaris, FreeBSD, RHEL, SUSE, Backtrack
Posts: 428

Rep: Reputation: 65
Sorry to be a little late but if you installed the src rpm it installs to /usr/src/redhat/

it would be in the SOURCES dir in that folder
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off
Trackbacks are Off
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
kernel panic problem in RHEL 4 !! shipon_97 Linux - Hardware 2 01-19-2009 05:48 AM
kernel panic while booting custom compiled 2.6.24 kernel on RHEL 4 AS samkraju Red Hat 4 02-10-2008 12:55 AM
Kernel panic-on RHEL-4 amitava Linux - Enterprise 4 05-16-2007 10:40 PM
Debian Etch/PPC SELinux kernel panic, glibc and policy.20 RavenOfOdin Debian 0 08-08-2006 07:15 PM
Kernel panic on RHEL 3 after 2 days of operation jalsk Red Hat 13 12-30-2004 05:38 PM


All times are GMT -5. The time now is 07:52 AM.

Main Menu
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration