kdump service fails with "kdump: Secure Boot is enabled. Using kexec file based syscall."

Solution Verified - Updated -

Issue

  • Fails to start the kdump service when system booted with ima_policy=secure_boot IMA policy.
systemctl status kdump
× kdump.service - Crash recovery kernel arming

systemd[1]: Starting Crash recovery kernel arming...
kdumpctl[1257]: kdump: Secure Boot is enabled. Using kexec file based syscall.
kdumpctl[858]: kdump: kexec: failed to load kdump kernel
kdumpctl[858]: kdump: Starting kdump: [FAILED]
systemd[1]: kdump.service: Main process exited, code=exited, status=1/FAILURE
systemd[1]: kdump.service: Failed with result 'exit-code'.
systemd[1]: Failed to start Crash recovery kernel arming.

Environment

  • Red Hat Enterprise Linux 9
  • Red Hat Enterprise Linux 10
  • IMA
  • kexec-tools

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.

Current Customers and Partners

Log in for full access

Log In

New to Red Hat?

Learn more about Red Hat subscriptions

Using a Red Hat product through a public cloud?

How to access this content