selinux is a pain

Martín Marqués martin.marques at gmail.com
Tue Sep 20 12:31:14 UTC 2011


2011/9/20 Ed Greshko <Ed.Greshko at greshko.com>:
> "Martín Marqués" <martin.marques at gmail.com> wrote:
>
>>I reinstalled (better hardware) a server and had selinux enabled (was
>>disabled before), and I starting to see why so many people don't use
>>selinux.
>>
>>My question is, how many people are using selinux?
>>
>>I, for instance, am about to disable it.
>
> As with others, I've been running selinux for years on all my systems including servers.  Other than the occasional need for a custom policy I've not had any problems.
>

OK, maybe here is the problem. I'm not used to custom policies of selinux.

For example, I moved the trac repos to /var/lib/trac, and so apache
needs extra append and access policy on some of those directories. How
would I add those policies?

-- 
Martín Marqués
select 'martin.marques' || '@' || 'gmail.com'
DBA, Programador, Administrador


More information about the users mailing list