The selinux shared tests
  • Shell 57.1%
  • Makefile 23.9%
  • C 18.5%
  • Python 0.4%
  • Perl 0.1%
Find a file
Milos Malik 53baf4175f instruct TMT to expect SELinux denials
The /selinux-policy/kernel-confined-exec test intentionally triggers
SELinux denials. TMT framework sees them as a problem unless told
otherwise. From now on, the TMT will expect them.
2026-04-13 07:30:27 +00:00
.fmf Update metadata to the list of approved attributes 2018-06-12 14:56:06 +02:00
checkpolicy Fix "adjust" statements 2025-10-09 20:22:22 +02:00
kernel Add a test for unexpected denials from sysctl -a 2026-03-12 13:22:29 +01:00
libselinux TMT IDs added to few tests 2026-02-12 14:07:43 +01:00
libsemanage Fix "adjust" statements 2025-10-09 20:22:22 +02:00
libsepol Fix "adjust" statements 2025-10-09 20:22:22 +02:00
mcstrans Fix "adjust" statements 2025-10-09 20:22:22 +02:00
other test if python code produces deprecation messages related to SWIG 2026-01-12 13:05:48 +00:00
plans Fix "adjust" statements 2025-10-09 20:22:22 +02:00
policycoreutils test if restorecond service times out occasionally 2026-04-09 12:56:50 +00:00
selinux-policy instruct TMT to expect SELinux denials 2026-04-13 07:30:27 +00:00
setools Fix "adjust" statements 2025-10-09 20:22:22 +02:00
setroubleshoot/independent-on-initscripts Fix "adjust" statements 2025-10-09 20:22:22 +02:00
main.fmf Increase the time limit when testing RHIVOS preload 2025-10-09 20:21:17 +02:00
README.md adding gating guideline to README 2025-08-26 13:03:09 +00:00

SELinux tests

This repository contains set of test for SELinux kernel, userspace and policy. Tests are written using beakerlib with TMT Metadata Specification.

Gating Guidelines

Test tiers define a test's priority for our gating process.

  • tier: 1: Critical tests that must pass for any code merge.
  • tier: 2: Important but non-critical tests.
  • tier: 3: Non-critical tests.

All other tier metadata (e.g., tag:Tier1) is now deprecated.

Plans

$ tmt plans
Found 5 plans: /plans/ci, /plans/reboot, /plans/tier1, /plans/tier2 and /plans/tier3.

Usage

Run tier1 on localhost:

# tmt run provision -h local prepare plans -n /plans/tier1 discover execute
# tmt run -l report -h display -v