Fapolicyd was enabled when the OpenSCAP mitigation was run in ex 1.7. This prevents enabling the container-web.service in section 5 of ex 1.8. Adding as a Step 0 so it can be easily removed if and when runc/crun are made compatible with fapolicy/fanotify.
Fapolicyd was enabled when the OpenSCAP mitigation was run in ex 1.7. This prevents enabling the container-web.service in section 5 of ex 1.8. Adding as a Step 0 so it can be easily removed if and when runc/crun are made compatible with fapolicy/fanotify.
This fixes issue https://github.com/RedHatGov/redhatgov.workshops/issues/140