Thanks for the help Daniel! selinuxenabled was returning 0. Turned out to be this bug:
http://serverfault.com/questions/340679/centos-6-kickstart-ignoring-selinux-disabled Setting a kernel option for selinux=0 made everything run correctly. Thanks again, Mark From: Daniel DeLeo
on behalf of Daniel DeLeo
Sent: Wednesday, November 06, 2013 10:27 AM To: Subject: [chef] Re: chef-client first-run restorecon error On Wednesday, November 6, 2013 at 7:21 AM, Rechler, Mark wrote:
Chef runs `selinuxenabled` and checks the return code to determine if selinux is enabled. Do you know of a reason why this command could return 0 if selinux is actually disabled?
Code: https://github.com/opscode/chef/blob/master/lib/chef/util/selinux.rb
--
Daniel DeLeo
|
Archive powered by MHonArc 2.6.16.