[Users] ovirt 3.1 engine install fails - fedora 17 with selinux disabled

Hi Thanks to all for the great work getting 3.1 out the door, 3.0 is working well for us and looking forward to playing with all the new features. At the moment, am having a small problem during initial engine setup where it fails if selinux is configured as "disabled" - is this intended behaviour? - selinux disabled - reports nfs domain setup as failed [root@ovirt-m-2 ~]# engine-setup --answer-file=ovirt-answers.ovirt-m-2.shazamteam.com -- snip----- Configuring the Default ISO Domain... [ ERROR ] -- snip [root@ovirt-m-2 ~]# engine-cleanup - After setting CONFIG_NFS=no, in the answer file; it gives an explicit error about selinux during the HTTPD phase (OVERRIDE_HTTPD_CONFIG=yes) [root@ovirt-m-2 ~]# engine-setup --answer-file=ovirt-answers.ovirt-m-2.shazamteam.com -- snip ---- Handling HTTPD... [ ERROR ] Failed to enable SELinux boolean -- snip ----- - set selinux to permissive and reboot - install succeeds (OVERRIDE_HTTPD_CONFIG=yes, CONFIG_NFS=yes) Cheers, Dave ______________________________________________________________________ This email has been scanned by the Symantec Email Security.cloud service. For more information please visit http://www.symanteccloud.com ______________________________________________________________________

--_b4596046-7db7-4af9-a84c-2616b9a4c6ec_ Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: quoted-printable David=2C Are you using the 3.5.0 kernel? There is currently an issue related to NFS = which is preventing oVirt 3.1 from working correctly. if you are using 3.5.= 0=2C try using an older kernel and see if that works until an updated kerne= l is pushed. - Nick
From: david.elliott@shazamteam.com To: users@ovirt.org Date: Fri=2C 10 Aug 2012 15:40:49 +0100 Subject: [Users] ovirt 3.1 engine install fails - fedora 17 with selinux = disabled =20 Hi =20 Thanks to all for the great work getting 3.1 out the door=2C 3.0 is work= ing well for us and looking forward to playing with all the new features. =20 At the moment=2C am having a small problem during initial engine setup wh= ere it fails if selinux is configured as "disabled" - is this intended behaviour?=20 =20 - selinux disabled=20 - reports nfs domain setup as failed=20 =20 [root@ovirt-m-2 ~]# engine-setup --answer-file=3Dovirt-answers.ovirt-m-2.shazamteam.com =20 -- snip----- =20 Configuring the Default ISO Domain... [ ERROR ] =20 -- snip =20 [root@ovirt-m-2 ~]# engine-cleanup =20 - After setting CONFIG_NFS=3Dno=2C in the answer file=3B it gives an expl= icit error about selinux during the HTTPD phase (OVERRIDE_HTTPD_CONFIG=3Dyes) =20 [root@ovirt-m-2 ~]# engine-setup --answer-file=3Dovirt-answers.ovirt-m-2.shazamteam.com =20 -- snip ----=20 =20 Handling HTTPD... [ ERROR ] Failed to enable SELinux boolean =20 -- snip ----- =20 - set selinux to permissive and reboot - install succeeds (OVERRIDE_HTTPD_CONFIG=3Dyes=2C CONFIG_NFS=3Dyes) =20 Cheers=2C Dave =20 =20 =20 =20 =20 ______________________________________________________________________ This email has been scanned by the Symantec Email Security.cloud service. For more information please visit http://www.symanteccloud.com ______________________________________________________________________ _______________________________________________ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users =
--_b4596046-7db7-4af9-a84c-2616b9a4c6ec_ Content-Type: text/html; charset="iso-8859-1" Content-Transfer-Encoding: quoted-printable <html> <head> <style><!-- .hmmessage P { margin:0px=3B padding:0px } body.hmmessage { font-size: 12pt=3B font-family:Calibri } --></style></head> <body class=3D'hmmessage'><div dir=3D'ltr'>David=2C<br>Are you using the 3.= 5.0 kernel? There is currently an issue related to NFS which is preventing = oVirt 3.1 from working correctly. if you are using 3.5.0=2C try using an ol= der kernel and see if that works until an updated kernel is pushed.<br><br>= - Nick<br><br><div><div id=3D"SkyDrivePlaceholder"></div>>=3B From: david= .elliott@shazamteam.com<br>>=3B To: users@ovirt.org<br>>=3B Date: Fri= =2C 10 Aug 2012 15:40:49 +0100<br>>=3B Subject: [Users] ovirt 3.1 engine = install fails - fedora 17 with selinux disabled<br>>=3B <br>>=3B Hi<br>= >=3B <br>>=3B Thanks to all for the great work getting 3.1 out the door= =2C 3.0 is working<br>>=3B well for us and looking forward to playing wi= th all the new features.<br>>=3B <br>>=3B At the moment=2C am having a = small problem during initial engine setup where<br>>=3B it fails if selin= ux is configured as "disabled" - is this intended<br>>=3B behaviour? <br>= >=3B <br>>=3B - selinux disabled <br>>=3B - reports nfs domain setup = as failed <br>>=3B <br>>=3B [root@ovirt-m-2 ~]# engine-setup<br>>=3B = --answer-file=3Dovirt-answers.ovirt-m-2.shazamteam.com<br>>=3B <br>>=3B= -- snip-----<br>>=3B <br>>=3B Configuring the Default ISO Domain... = [ ERROR ]<br>>=3B <br>>=3B -- snip<br>>=3B <br>>=3B [= root@ovirt-m-2 ~]# engine-cleanup<br>>=3B <br>>=3B - After setting CONF= IG_NFS=3Dno=2C in the answer file=3B it gives an explicit<br>>=3B error a= bout selinux during the HTTPD phase (OVERRIDE_HTTPD_CONFIG=3Dyes)<br>>=3B= <br>>=3B [root@ovirt-m-2 ~]# engine-setup<br>>=3B --answer-file=3Dovir= t-answers.ovirt-m-2.shazamteam.com<br>>=3B <br>>=3B -- snip ---- <br>&g= t=3B <br>>=3B Handling HTTPD... [ ERR= OR ]<br>>=3B Failed to enable SELinux boolean<br>>=3B <br>>=3B -- sni= p -----<br>>=3B <br>>=3B - set selinux to permissive and reboot<br>>= =3B - install succeeds (OVERRIDE_HTTPD_CONFIG=3Dyes=2C CONFIG_NFS=3Dyes)<br=
>=3B <br>>=3B Cheers=2C<br>>=3B Dave<br>>=3B <br>>=3B <br>>=3B= <br>>=3B <br>>=3B <br>>=3B _________________________________________= _____________________________<br>>=3B This email has been scanned by the = Symantec Email Security.cloud service.<br>>=3B For more information pleas= e visit http://www.symanteccloud.com<br>>=3B ____________________________= __________________________________________<br>>=3B ______________________= _________________________<br>>=3B Users mailing list<br>>=3B Users@ovir= t.org<br>>=3B http://lists.ovirt.org/mailman/listinfo/users<br></div> = </div></body> </html>=
--_b4596046-7db7-4af9-a84c-2616b9a4c6ec_--

Hi! That 3.5 kernel issue is, what I have understood, more related to nfs as storage domain, not the problem Davis is refering to. Rgrds Johan -----users-bounces@ovirt.org skrev: ----- Till: David Elliott <david.elliott@shazamteam.com>, oVirt Mailing List <users@ovirt.org> Från: Nicholas Kesick Sänt av: users-bounces@ovirt.org Datum: 2012.08.10 16:51 Ärende: Re: [Users] ovirt 3.1 engine install fails - fedora 17 with selinux disabled David, Are you using the 3.5.0 kernel? There is currently an issue related to NFS which is preventing oVirt 3.1 from working correctly. if you are using 3.5.0, try using an older kernel and see if that works until an updated kernel is pushed. - Nick
From: david.elliott@shazamteam.com To: users@ovirt.org Date: Fri, 10 Aug 2012 15:40:49 +0100 Subject: [Users] ovirt 3.1 engine install fails - fedora 17 with selinux disabled
Hi
Thanks to all for the great work getting 3.1 out the door, 3.0 is working well for us and looking forward to playing with all the new features.
At the moment, am having a small problem during initial engine setup where it fails if selinux is configured as "disabled" - is this intended behaviour?
- selinux disabled - reports nfs domain setup as failed
[root@ovirt-m-2 ~]# engine-setup --answer-file=ovirt-answers.ovirt-m-2.shazamteam.com
-- snip-----
Configuring the Default ISO Domain... [ ERROR ]
-- snip
[root@ovirt-m-2 ~]# engine-cleanup
- After setting CONFIG_NFS=no, in the answer file; it gives an explicit error about selinux during the HTTPD phase (OVERRIDE_HTTPD_CONFIG=yes)
[root@ovirt-m-2 ~]# engine-setup --answer-file=ovirt-answers.ovirt-m-2.shazamteam.com
-- snip ----
Handling HTTPD... [ ERROR ] Failed to enable SELinux boolean
-- snip -----
- set selinux to permissive and reboot - install succeeds (OVERRIDE_HTTPD_CONFIG=yes, CONFIG_NFS=yes)
Cheers, Dave
______________________________________________________________________ This email has been scanned by the Symantec Email Security.cloud service. For more information please visit http://www.symanteccloud.com ______________________________________________________________________ _______________________________________________ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
_______________________________________________ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users

Hi That occurred to me as well, but kernel is 3.3.4-5.fc17.x86_64 I've tried this a few times now - and the behaviour is consistent - fails with selinux disabled - either at the nfs iso domain phase , or if configured without nfs iso - at the httpd step - succeeds with selinux permissive - with both nfs iso domain and httpd configured Cheers, Dave -----Original Message----- From: Johan Kragsterman [mailto:johan.kragsterman@capvert.se] Sent: 10 August 2012 16:25 To: Nicholas Kesick Cc: David Elliott; oVirt Mailing List Subject: Re: [Users] ovirt 3.1 engine install fails - fedora 17 with selinux disabled Hi! That 3.5 kernel issue is, what I have understood, more related to nfs as storage domain, not the problem Davis is refering to. Rgrds Johan -----users-bounces@ovirt.org skrev: ----- Till: David Elliott <david.elliott@shazamteam.com>, oVirt Mailing List <users@ovirt.org> Från: Nicholas Kesick Sänt av: users-bounces@ovirt.org Datum: 2012.08.10 16:51 Ärende: Re: [Users] ovirt 3.1 engine install fails - fedora 17 with selinux disabled David, Are you using the 3.5.0 kernel? There is currently an issue related to NFS which is preventing oVirt 3.1 from working correctly. if you are using 3.5.0, try using an older kernel and see if that works until an updated kernel is pushed. - Nick
From: david.elliott@shazamteam.com To: users@ovirt.org Date: Fri, 10 Aug 2012 15:40:49 +0100 Subject: [Users] ovirt 3.1 engine install fails - fedora 17 with selinux disabled
Hi
Thanks to all for the great work getting 3.1 out the door, 3.0 is working well for us and looking forward to playing with all the new features.
At the moment, am having a small problem during initial engine setup where it fails if selinux is configured as "disabled" - is this intended behaviour?
- selinux disabled - reports nfs domain setup as failed
[root@ovirt-m-2 ~]# engine-setup --answer-file=ovirt-answers.ovirt-m-2.shazamteam.com
-- snip-----
Configuring the Default ISO Domain... [ ERROR ]
-- snip
[root@ovirt-m-2 ~]# engine-cleanup
- After setting CONFIG_NFS=no, in the answer file; it gives an explicit error about selinux during the HTTPD phase (OVERRIDE_HTTPD_CONFIG=yes)
[root@ovirt-m-2 ~]# engine-setup --answer-file=ovirt-answers.ovirt-m-2.shazamteam.com
-- snip ----
Handling HTTPD... [ ERROR ] Failed to enable SELinux boolean
-- snip -----
- set selinux to permissive and reboot - install succeeds (OVERRIDE_HTTPD_CONFIG=yes, CONFIG_NFS=yes)
Cheers, Dave
______________________________________________________________________ This email has been scanned by the Symantec Email Security.cloud service. For more information please visit http://www.symanteccloud.com ______________________________________________________________________ _______________________________________________ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
_______________________________________________ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users ______________________________________________________________________ This email has been scanned by the Symantec Email Security.cloud service. For more information please visit http://www.symanteccloud.com ______________________________________________________________________ ______________________________________________________________________ This email has been scanned by the Symantec Email Security.cloud service. For more information please visit http://www.symanteccloud.com ______________________________________________________________________

Hi! I encountered the same problem, and I found this bug: https://bugzilla.redhat.com/show_bug.cgi?id=835100 reported by Ofer Schreiber. So it is not intended. I do have another problem, related to this,though! I can't set my SELinux to permissive...? In the /etc/selinux/conf file, I change and put in permissive, save the file and reboot. When the system starts sestatus reports disabled...? I tried this a couple of times, and I don't know why it's sort of stuck there... Idea's...? regards Johan -----users-bounces@ovirt.org skrev: ----- Till: <users@ovirt.org> Från: David Elliott Sänt av: users-bounces@ovirt.org Datum: 2012.08.10 16:41 Ärende: [Users] ovirt 3.1 engine install fails - fedora 17 with selinux disabled Hi Thanks to all for the great work getting 3.1 out the door, 3.0 is working well for us and looking forward to playing with all the new features. At the moment, am having a small problem during initial engine setup where it fails if selinux is configured as "disabled" - is this intended behaviour? - selinux disabled - reports nfs domain setup as failed [root@ovirt-m-2 ~]# engine-setup --answer-file=ovirt-answers.ovirt-m-2.shazamteam.com -- snip----- Configuring the Default ISO Domain... [ ERROR ] -- snip [root@ovirt-m-2 ~]# engine-cleanup - After setting CONFIG_NFS=no, in the answer file; it gives an explicit error about selinux during the HTTPD phase (OVERRIDE_HTTPD_CONFIG=yes) [root@ovirt-m-2 ~]# engine-setup --answer-file=ovirt-answers.ovirt-m-2.shazamteam.com -- snip ---- Handling HTTPD... [ ERROR ] Failed to enable SELinux boolean -- snip ----- - set selinux to permissive and reboot - install succeeds (OVERRIDE_HTTPD_CONFIG=yes, CONFIG_NFS=yes) Cheers, Dave ______________________________________________________________________ This email has been scanned by the Symantec Email Security.cloud service. For more information please visit http://www.symanteccloud.com ______________________________________________________________________ _______________________________________________ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users

Did you try setting it to enabled and then to permissive? I seem to remember that when you turn SELInux back on, it has to reindex or something. Maybe you have to go to enabled first before permissive to get it to do that. Then again, my memory could just be haywire. On Fri, Aug 10, 2012 at 11:18 AM, Johan Kragsterman < johan.kragsterman@capvert.se> wrote:
Hi!
I encountered the same problem, and I found this bug:
https://bugzilla.redhat.com/show_bug.cgi?id=835100
reported by Ofer Schreiber.
So it is not intended.
I do have another problem, related to this,though!
I can't set my SELinux to permissive...? In the /etc/selinux/conf file, I change and put in permissive, save the file and reboot. When the system starts sestatus reports disabled...? I tried this a couple of times, and I don't know why it's sort of stuck there...
Idea's...?
regards Johan
-----users-bounces@ovirt.org skrev: ----- Till: <users@ovirt.org> Från: David Elliott Sänt av: users-bounces@ovirt.org Datum: 2012.08.10 16:41 Ärende: [Users] ovirt 3.1 engine install fails - fedora 17 with selinux disabled
Hi
Thanks to all for the great work getting 3.1 out the door, 3.0 is working well for us and looking forward to playing with all the new features.
At the moment, am having a small problem during initial engine setup where it fails if selinux is configured as "disabled" - is this intended behaviour?
- selinux disabled - reports nfs domain setup as failed
[root@ovirt-m-2 ~]# engine-setup --answer-file=ovirt-answers.ovirt-m-2.shazamteam.com
-- snip-----
Configuring the Default ISO Domain... [ ERROR ]
-- snip
[root@ovirt-m-2 ~]# engine-cleanup
- After setting CONFIG_NFS=no, in the answer file; it gives an explicit error about selinux during the HTTPD phase (OVERRIDE_HTTPD_CONFIG=yes)
[root@ovirt-m-2 ~]# engine-setup --answer-file=ovirt-answers.ovirt-m-2.shazamteam.com
-- snip ----
Handling HTTPD... [ ERROR ] Failed to enable SELinux boolean
-- snip -----
- set selinux to permissive and reboot - install succeeds (OVERRIDE_HTTPD_CONFIG=yes, CONFIG_NFS=yes)
Cheers, Dave
______________________________________________________________________ This email has been scanned by the Symantec Email Security.cloud service. For more information please visit http://www.symanteccloud.com ______________________________________________________________________ _______________________________________________ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users _______________________________________________ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
-- Gary Scarborough IST Lab Manager Rochester Institute of Technology Rochester NY

Just to verify I had the same problem I then set selinux to enabled. Rebooted and it reindexed for about 10 minutes. Retried and it installed fine. I just tried right now so it worked to set selinux to enabled.
Dominic On Sun, Aug 12, 2012 at 11:01 PM, Gary Scarborough <virtuallymad@gmail.com>wrote:
Did you try setting it to enabled and then to permissive? I seem to remember that when you turn SELInux back on, it has to reindex or something. Maybe you have to go to enabled first before permissive to get it to do that. Then again, my memory could just be haywire.
On Fri, Aug 10, 2012 at 11:18 AM, Johan Kragsterman < johan.kragsterman@capvert.se> wrote:
Hi!
I encountered the same problem, and I found this bug:
https://bugzilla.redhat.com/show_bug.cgi?id=835100
reported by Ofer Schreiber.
So it is not intended.
I do have another problem, related to this,though!
I can't set my SELinux to permissive...? In the /etc/selinux/conf file, I change and put in permissive, save the file and reboot. When the system starts sestatus reports disabled...? I tried this a couple of times, and I don't know why it's sort of stuck there...
Idea's...?
regards Johan
-----users-bounces@ovirt.org skrev: ----- Till: <users@ovirt.org> Från: David Elliott Sänt av: users-bounces@ovirt.org Datum: 2012.08.10 16:41 Ärende: [Users] ovirt 3.1 engine install fails - fedora 17 with selinux disabled
Hi
Thanks to all for the great work getting 3.1 out the door, 3.0 is working well for us and looking forward to playing with all the new features.
At the moment, am having a small problem during initial engine setup where it fails if selinux is configured as "disabled" - is this intended behaviour?
- selinux disabled - reports nfs domain setup as failed
[root@ovirt-m-2 ~]# engine-setup --answer-file=ovirt-answers.ovirt-m-2.shazamteam.com
-- snip-----
Configuring the Default ISO Domain... [ ERROR ]
-- snip
[root@ovirt-m-2 ~]# engine-cleanup
- After setting CONFIG_NFS=no, in the answer file; it gives an explicit error about selinux during the HTTPD phase (OVERRIDE_HTTPD_CONFIG=yes)
[root@ovirt-m-2 ~]# engine-setup --answer-file=ovirt-answers.ovirt-m-2.shazamteam.com
-- snip ----
Handling HTTPD... [ ERROR ] Failed to enable SELinux boolean
-- snip -----
- set selinux to permissive and reboot - install succeeds (OVERRIDE_HTTPD_CONFIG=yes, CONFIG_NFS=yes)
Cheers, Dave
______________________________________________________________________ This email has been scanned by the Symantec Email Security.cloud service. For more information please visit http://www.symanteccloud.com ______________________________________________________________________ _______________________________________________ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users _______________________________________________ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
-- Gary Scarborough IST Lab Manager Rochester Institute of Technology Rochester NY
_______________________________________________ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
-- Dominic Kaiser Greater Boston Vineyard Director of Operations cell: 617-230-1412 fax: 617-252-0238 email: dominic@bostonvineyard.org
participants (5)
-
David Elliott
-
Dominic Kaiser
-
Gary Scarborough
-
Johan Kragsterman
-
Nicholas Kesick