Skip to content

Commit 6396afc

Browse files
committed
disable SELinux
1 parent b13a885 commit 6396afc

File tree

2 files changed

+13
-2
lines changed

2 files changed

+13
-2
lines changed
Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,2 @@
1+
selinux_state: disabled
2+
selinux_policy: targeted

roles/builder/tasks/main.yml

Lines changed: 11 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -9,17 +9,26 @@
99
dest: /var/lib/misc/build.txt
1010
content: "{{ builder_commit.stdout }}"
1111

12+
- name: Set SELinux state and policy
13+
ansible.posix.selinux:
14+
state: "{{ selinux_state }}"
15+
policy: "{{ selinux_policy }}"
16+
register: sestatus
17+
1218
- name: Upgrade base image packages
1319
dnf:
1420
name: '*'
1521
state: latest
1622
exclude: "{{ dnf_update_exclude }}"
1723
register: dnf_upgrade
1824

19-
- name: Reboot if required due to package upgrades
25+
- name: Reboot if required
2026
reboot:
2127
post_reboot_delay: 30
22-
when: "(lookup('fileglob', '/var/run/reboot-required') | length > 0) or ('kernel-' in dnf_upgrade.results | join)"
28+
when: >-
29+
(lookup('fileglob', '/var/run/reboot-required') | length > 0) or
30+
('kernel-' in dnf_upgrade.results | join) or
31+
(sestatus.reboot_required | default(false))
2332
2433
- name: Wait for hosts to be reachable
2534
wait_for_connection:

0 commit comments

Comments
 (0)