Re: Selinux/audit expirience

From: Brian Wakem (no_at_email.com)
Date: 08/27/05

  • Next message: Richard Burke: "Evolution and MS Exhange Server/"
    Date: Sat, 27 Aug 2005 21:03:36 +0100
    
    

    Michael Heiming wrote:

    > Hi!
    >
    > As long time happy Linux user recently got pissed-off pretty much
    > by selinux and the annoying audit subsystem.
    >
    > FC3 + RHEL 3.0 turned on the audit subsystem on some upgrade and
    > gave trouble until turning off/deleting the crap. No real fun if
    > the later system is a production server.;(
    >
    > RHEL 4.0 turned on selinux, making the system effectively
    > unusable, until you switched it off via kernel append line
    > completely.
    >
    > Did you encounter similar problems?
    >

    Yes I have just set-up and configured a RHEL4 server. selinux made it
    totally unusable, it stops almost everything from working. I don't even
    see how it is possible to run a web/mail/database server with it running.

    Turned it off as soon as I realised it was the cause of all my problems.

    -- 
    Brian Wakem
    Email: http://homepage.ntlworld.com/b.wakem/myemail.png
    

  • Next message: Richard Burke: "Evolution and MS Exhange Server/"

    Relevant Pages

    • Re: SElinux ?
      ... server environment, ... bear in mind that installing a product on a live server does run ... Another time you install a package now that SELinux ... any fine-grained security system like that is going to need ...
      (uk.comp.os.linux)
    • Re: NFS: permission denied. Help?
      ... My file server is running CentOS5 (SELinux targeted) and my Workstation ... CentOS server) and I'm getting "EACCESS" when I try to mount the share. ... I restarted the nfs, ...
      (Fedora)
    • Re: [AppArmor 39/45] AppArmor: Profile loading and manipulation, pathname matching
      ... policy applied on the server as well as the client to ensure that the ... SELinux does depend on the correctness of the kernel. ... Then yours isn't mandatory access control, nor is it confinement. ...
      (Linux-Kernel)
    • Re: [AppArmor 39/45] AppArmor: Profile loading and manipulation, pathname matching
      ... policy applied on the server as well as the client to ensure that the ... SELinux does depend on the correctness of the kernel. ... inheritance, e.g. if you specify an ACL on a directory, then all files ...
      (Linux-Kernel)
    • Re: Selinux/audit expirience
      ... > by selinux and the annoying audit subsystem. ... > gave trouble until turning off/deleting the crap. ... Yes I have just set-up and configured a RHEL4 server. ...
      (comp.os.linux.misc)