No need for AV tools on Linux, eh?

Darr darr at core.com
Sat Feb 12 16:25:39 UTC 2011


On Saturday, February 12, 2011 @12:46 zulu, Tim 
<ignored_mailbox at yahoo.com.au> scribed:

> Well, it /could/ stop either threat, however we don't run SELinux
> as tightly as it could be run.

I'm not sure who "we" is, but I run it in restricted mode and rarely even 
get told something has mislabeled files... and when I do get such a message, 
an autorelabel and reboot nearly-always fixes it (I don't mind rebooting 
once a month or so... else I would SU - and change their context manually). 
I don't remember the last time I got an actual denial. More than a year ago, 
for sure.

For as many complaints as I see about SElinux in this list, I wonder why 
those posters don't step up over in the SELinux list and tell their woes... 
because I've never seen anyone there not get their problems fixed when they 
simply followed the steps given (even if the step was eventually where to 
file the bugzilla... then either the app got fixed or a new policy 'fixed' 
it). 



More information about the users mailing list