"IMA + EVM + SELINUX" will not boot together you either have to choose one or the other. Either IMA or SELINUX alone but if both are enabled with EVM using TPM hardware to store keys system will not boot past initrc. Cant seem to find out what is going on. Boot is broken very early in the boot process during initrc. System can boot with only selinux or IMA alone but not both.
Im using custom IMA policy loaded in a initscript. Then EVM is enabled. EVM key blobs is also the first thing this script loads before IMA policy and EVM enable.
*** This bug has been marked as a duplicate of bug 777294 ***
This is a separate problem from bug 777294 why has it been maked as duplicate to 777294. These problems are not related at all I just included this problem in the other report as well.