In order to get a working vTPM support in containers, we need to enable
a new SELinux boolean provided by openstack-selinux[1].
This patch affects only the deprecated
nova-libvirt-container-puppet.yaml template in order to do a clean
backport to stable/Wallaby and stable/Victoria.
Reviewed: https:/ /review. opendev. org/c/openstack /tripleo- heat-templates/ +/814359 /opendev. org/openstack/ tripleo- heat-templates/ commit/ 2133864d900ce03 4d8e300f9e397e3 da81920201
Committed: https:/
Submitter: "Zuul (22348)"
Branch: stable/wallaby
commit 2133864d900ce03 4d8e300f9e397e3 da81920201
Author: Cédric Jeanneret <email address hidden>
Date: Mon Oct 11 15:41:35 2021 +0200
Enable new SELinux boolean for vTPM support
In order to get a working vTPM support in containers, we need to enable selinux[ 1].
a new SELinux boolean provided by openstack-
This patch affects only the deprecated libvirt- container- puppet. yaml template in order to do a clean
nova-
backport to stable/Wallaby and stable/Victoria.
[1] https:/ /github. com/redhat- openstack/ openstack- selinux/ pull/80
Change-Id: I1d2368135f7b0a 83dec2192c242c0 81e2f5127c1 c0f59fa5b1eff48 449acf6b85)
Closes-Bug: #1902468
Resolves: rhbz#2007314
(cherry picked from commit f664302c3deb539