After removing selinux, warnings while booting

Bug #208655 reported by Adna rim
8
Affects Status Importance Assigned to Milestone
selinux (Ubuntu)
Won't Fix
Low
Unassigned

Bug Description

After removing selinux on Ubuntu Hardy I keep getting lots of Warnings while booting like:
can't mount /selinux
failed to chroot /loadpolicy...
and so ...

Revision history for this message
Caleb Case (calebcase) wrote :

The scripts that are added to the initramfs are not deleted on a 'remove'. They are on a purge however (dpkg -P selinux).

I've attached a patch that deletes the initramfs scripts when selinux is removed.

Revision history for this message
Kees Cook (kees) wrote : Re: [ubuntu-hardened] [Bug 208655] Re: After removing selinux, warnings while booting

On Mon, Apr 14, 2008 at 10:10:42AM -0000, Caleb Case wrote:
> I've attached a patch that deletes the initramfs scripts when selinux is
> removed.

Hmm, I think a Debian-policy-safer way to handle this might be to alter
the initramfs script to detect if selinux is enabled or not (to avoid
the warnings), similar to how init.d scripts check that the daemon is
still installed. We should not remove things from /etc if a user hasn't
done a "purge".

--
Kees Cook
Ubuntu Security Team

Revision history for this message
Adna rim (adnarim) wrote :

@Caleb Case: thanks for pointing me to the problem!

@Kees Cook: Can you specify an extra postrm for purging? Because removing these entries isn't enough. You still have to execute update-initramfs -u. If that shouldn't be possible we end up with a package which effects can't totally be deinstalled with apt-get purge or?

Changed in selinux:
status: New → Confirmed
Changed in selinux:
importance: Undecided → Low
Revision history for this message
Daniel van Vugt (vanvugt) wrote :

Thank you for reporting this bug to Ubuntu.
Ubuntu 8.04 (hardy) reached end-of-life on May 12, 2011.

See this document for currently supported Ubuntu releases:
https://wiki.ubuntu.com/Releases

We appreciate that this bug may be old and you might not be interested in discussing it any more. But if you are then please upgrade to the latest Ubuntu version and re-test. If you then find the bug is still present in the newer Ubuntu version, please add a comment here telling us which new version it is in and change the bug status to Confirmed.

Changed in selinux (Ubuntu):
status: Confirmed → Won't Fix
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.