RBAC on overlayfs filesystem

PostPosted: Mon Mar 06, 2017 5:56 pm
by mynick
I'm struggling with RBAC on a filesystem with an overlayfs root. When I enable full learning it creates the logs but i can't disable it via "sudo gradm2 -D". It just says the password is incorrect, but it is definitely the correct one. When I create the policy and enable it the log gets filled with grsec denied messages. More or less everything is denied it seems.
Using the same system but without overlayfs everything works fine. I can disable learning or RBAC generally. When I enable RBAC no denied messages show up in the logs. Any ideas how to fix this?