On Tue, 2007-09-25 at 12:03 -0400, Jesse Keating wrote:
On Tue, 25 Sep 2007 11:51:33 -0400
Jeremy Katz <katzj(a)redhat.com> wrote:
> Huh? If you have it disabled via /etc/selinux/config, then init
> doesn't load a policy and pokes the kernel to disable the hooks.
> Which should then be identical to selinux=0
Ah, maybe it's just a difference between booting with enforcing=0 and
having permissive be set in /etc/sysconfig/selinux.
Shouldn't matter, as everything is allowed until policy is loaded.
--
Stephen Smalley
National Security Agency