From Fedora Project Wiki
< SELinux
(Created page with "= Resources for writing custom SELinux policies = * [https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/9/html/using_selinux/writing-a-custom-selinux-policy_using-selinux Custom policy writing introduction] * [https://docs.fedoraproject.org/en-US/Fedora/25/html/SELinux_Users_and_Administrators_Guide/sect-Security-Enhanced_Linux-Fixing_Problems-Allowing_Access_audit2allow.html audit2allow] * [https://lukas-vrabec.com/index.php/2019/02/03/new-trick-ma...") |
mNo edit summary |
||
Line 14: | Line 14: | ||
* [https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/9/html/using_selinux/configuring-selinux-for-applications-and-services-with-non-standard-configurations_using-selinux Non standard configuration policy adjustments] | * [https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/9/html/using_selinux/configuring-selinux-for-applications-and-services-with-non-standard-configurations_using-selinux Non standard configuration policy adjustments] | ||
* Troubleshooting | * Troubleshooting | ||
** [https://access.redhat.com/articles/2191331 Basic SELinux Troubleshooting in CLI] | |||
** [https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/9/html/using_selinux/troubleshooting-problems-related-to-selinux_using-selinux RHEL documentation] | ** [https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/9/html/using_selinux/troubleshooting-problems-related-to-selinux_using-selinux RHEL documentation] | ||
** [https://docs.fedoraproject.org/en-US/Fedora/25/html/SELinux_Users_and_Administrators_Guide/chap-Security-Enhanced_Linux-Troubleshooting.html Fedora documentation] | ** [https://docs.fedoraproject.org/en-US/Fedora/25/html/SELinux_Users_and_Administrators_Guide/chap-Security-Enhanced_Linux-Troubleshooting.html Fedora documentation] |
Latest revision as of 12:14, 23 November 2022
Resources for writing custom SELinux policies
- Custom policy writing introduction
- audit2allow
- Macro expander
- Refpolicy support macros (policy_module, gen_require, optional_policy)
- Booleans (aka Conditionals)
- File labeling
- SETools
- Process contexts and domain transitions
- File name transitions
- Non standard configuration policy adjustments
- Troubleshooting