Puppet runs as unconfined_service_t
Issue
- Puppet from the Satellite tools repos is running in the
unconfined_service_t
SElinux context - Puppet from EPEL runs in the
puppetagent_t
context - All rules in the SElinux policy tagging new files with the right context are not applied by Puppet from Satellite
Environment
- Red Hat Satellite 6
- Red Hat Enterprise Linux 7
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.