SELinux is preventing systemd-machine from 'getattr' accesses on the file /proc/pid/cgroup
Issue
Containers can not be started and the following error is registered in the messages file:
type=AVC msg=audit(1478679024.796:327): avc: denied { getattr } for pid=19096 comm="systemd-machine" path="/proc/19083/cgroup" dev="proc" ino=105916 scontext=system_u:system_r:systemd_machined_t:s0 tcontext =system_u:system_r:unconfined_service_t:s0 tclass=file
Environment
- Red Hat Enterprise Linux 7.x
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.