[Newlug] Linux : Security Topic

telecomtom at vedatel.com telecomtom at vedatel.com
Fri Jun 29 20:07:09 CDT 2007


jay.pharis wrote:
>> i'm interested hearing in how others configure selinux and
>> how they know whether they're having a problem because of it,
>> and how to reconfigure to avoid the problem.
>
> I configure it by disabling it.  Problem solved.

that is a valid solution. but i was hoping someone could discuss another
option: enabling selinux and opening services and ports one at a time as
they are needed. the approach would be like the first step in network
security: shut down all ports on wan interfaces and open only those that
are necessary for whatever servers are running.

-- TT




More information about the Newlug mailing list