Uploaded image for project: 'Product Technical Learning'
  1. Product Technical Learning
  2. PTL-6981

RH342-26: SELinux: add more than what was in the RHCE

XMLWordPrintable

    • Icon: Story Story
    • Resolution: Done
    • Icon: Major Major
    • RH342 - RHEL 7.2 0 20160301
    • RH342
    • None
    • en-US (English)

      URL:
      Reporter RHNID:
      Section: -
      Language: en-US (English)
      Workaround:

      Description: The SELinux section covers nothing that isn't already covered in RHCSA/RHCE level except maybe dontaudit rules. Additional things we could cover:

      • fcontext equivalency rules (i.e., semanage -a -e /sourcedir /targetdir)) and how sometimes they're the cause of problems and other times they're a much better solution than adding a traditional `fcontext -a -t` rule.
      • Using sesearch to inspect what a particular domain is actually allowed to do (for example).
      • Piping ausearch output to audit2why and audit2allow.

              wboessen Wander Boessenkool (Inactive)
              ryanaroha Ryan Aroha (Inactive)
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

                Created:
                Updated:
                Resolved: