find invalid fcontext without autorelabeling

george karakou mad-proffessor at hotmail.com
Fri Oct 24 17:03:17 UTC 2014


So i disabled some semodules i did not want to make selinux perform 
faster and my logs got filled with invalid context. Is there an easy way 
to restorecon without touching an autorelabel file?
Something like
find / -type f -context blahblah
or something else?
Actually i thought that since the context was invalid selinux would have 
simply denied access to files but that didn't seem to be the case...


More information about the selinux mailing list