SELinux: differenze tra le versioni

Da Emigar.
Jump to navigation Jump to search
Riga 8: Riga 8:
grep nginx /etc/selinux/targeted/contexts/files/file_contexts
grep nginx /etc/selinux/targeted/contexts/files/file_contexts


ls -laZ /etc/nginx/html/



Porcata:
Porcata:

Versione delle 18:57, 10 nov 2022

RHEL

semanage fcontext --list


grep nginx /etc/selinux/targeted/contexts/files/file_contexts
ls -laZ /etc/nginx/html/

Porcata:

Easy but bad solution, allow init_t to run in permissive mode. At least you don't have to run the whole system in permissive mode...
Enable:
# semanage permissive -a init_t
Disable:
# semanage permissive -d init_t

systemd

Systemd consente di modificare il contesto in cui gira un processo.