mcstransd does not work after enabling hidepid on RHEL 7
Issue
-
How to configure
mcstransto work withhidepidmount options for/procon Red Hat Enterprise Linux 7. -
The
mcstransdservice reports the following errors in the system message logs:mcstransd[xxxx]: Failed to get context of client process (pid=xx) mcstransd[xxxx]: Servicing of request failed for fd (x) -
The
mcstransdservice does not translateSELinuxcontexts even when it is running:# ls -Zd /tmp drwxrwxrwt. root root system_u:object_r:tmp_t:SystemLow /tmp # mount -o remount,hidepid=2,gid=10 /proc # ls -Zd /tmp drwxrwxrwt. root root system_u:object_r:tmp_t:s0 /tmp -
The
mcstransdservice has no effect even if the client user is in thehidepid/gidgroup.
Environment
- Red Hat Enterprise Linux 7
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.