/opt/quest/bin/vastool status shows the below warning:
INFO: SELinux enabled (Enforcing), vasd policy is installed.
WARNING: Incorrect policy applied to vasd state directory.
To fix this, please run:
/opt/quest/bin/vastool configure selinux
Conflicts when trying to run /opt/quest/bin/vastool configure selinux like the one below can be seen as well:
Errors like "ValueError: File spec /var/opt/quest/vas/vasd(/.*)? conflicts with equivalency rule '/var/opt /opt'; Try adding '/opt/quest/vas/vasd(/.*)?' instead" can be seen.
RHEL 10.x and Fedora 43 introduces an SELinux equivalency mapping between /var/opt and /opt
When running /opt/quest/bin/vastool configure SELinux it attempts to manage local fcontext rules under /var/opt, semanage may fail with an equivalency conflict, as rules must be defined on the canonical /opt path.
This has been identified as defect 644643, we have adapted our SELinux policy configuration to support this equivalency rule, this has been resolved/included in the latest release of Safeguard Authentication Services 7.0.
For details on version 7.0 and fixed issues please refer to the release notes here.
© 2026 One Identity LLC. ALL RIGHTS RESERVED. Terms of Use Privacy Cookie Preference Center