~ [ source navigation ] ~ [ diff markup ] ~ [ identifier search ] ~

TOMOYO Linux Cross Reference
Linux/Documentation/admin-guide/LSM/SELinux.rst

Version: ~ [ linux-6.11.5 ] ~ [ linux-6.10.14 ] ~ [ linux-6.9.12 ] ~ [ linux-6.8.12 ] ~ [ linux-6.7.12 ] ~ [ linux-6.6.58 ] ~ [ linux-6.5.13 ] ~ [ linux-6.4.16 ] ~ [ linux-6.3.13 ] ~ [ linux-6.2.16 ] ~ [ linux-6.1.114 ] ~ [ linux-6.0.19 ] ~ [ linux-5.19.17 ] ~ [ linux-5.18.19 ] ~ [ linux-5.17.15 ] ~ [ linux-5.16.20 ] ~ [ linux-5.15.169 ] ~ [ linux-5.14.21 ] ~ [ linux-5.13.19 ] ~ [ linux-5.12.19 ] ~ [ linux-5.11.22 ] ~ [ linux-5.10.228 ] ~ [ linux-5.9.16 ] ~ [ linux-5.8.18 ] ~ [ linux-5.7.19 ] ~ [ linux-5.6.19 ] ~ [ linux-5.5.19 ] ~ [ linux-5.4.284 ] ~ [ linux-5.3.18 ] ~ [ linux-5.2.21 ] ~ [ linux-5.1.21 ] ~ [ linux-5.0.21 ] ~ [ linux-4.20.17 ] ~ [ linux-4.19.322 ] ~ [ linux-4.18.20 ] ~ [ linux-4.17.19 ] ~ [ linux-4.16.18 ] ~ [ linux-4.15.18 ] ~ [ linux-4.14.336 ] ~ [ linux-4.13.16 ] ~ [ linux-4.12.14 ] ~ [ linux-4.11.12 ] ~ [ linux-4.10.17 ] ~ [ linux-4.9.337 ] ~ [ linux-4.4.302 ] ~ [ linux-3.10.108 ] ~ [ linux-2.6.32.71 ] ~ [ linux-2.6.0 ] ~ [ linux-2.4.37.11 ] ~ [ unix-v6-master ] ~ [ ccs-tools-1.8.9 ] ~ [ policy-sample ] ~
Architecture: ~ [ i386 ] ~ [ alpha ] ~ [ m68k ] ~ [ mips ] ~ [ ppc ] ~ [ sparc ] ~ [ sparc64 ] ~

  1 =======
  2 SELinux
  3 =======
  4 
  5 If you want to use SELinux, chances are you will want
  6 to use the distro-provided policies, or install the
  7 latest reference policy release from
  8 
  9         https://github.com/SELinuxProject/refpolicy
 10 
 11 However, if you want to install a dummy policy for
 12 testing, you can do using ``mdp`` provided under
 13 scripts/selinux.  Note that this requires the selinux
 14 userspace to be installed - in particular you will
 15 need checkpolicy to compile a kernel, and setfiles and
 16 fixfiles to label the filesystem.
 17 
 18         1. Compile the kernel with selinux enabled.
 19         2. Type ``make`` to compile ``mdp``.
 20         3. Make sure that you are not running with
 21            SELinux enabled and a real policy.  If
 22            you are, reboot with selinux disabled
 23            before continuing.
 24         4. Run install_policy.sh::
 25 
 26                 cd scripts/selinux
 27                 sh install_policy.sh
 28 
 29 Step 4 will create a new dummy policy valid for your
 30 kernel, with a single selinux user, role, and type.
 31 It will compile the policy, will set your ``SELINUXTYPE`` to
 32 ``dummy`` in ``/etc/selinux/config``, install the compiled policy
 33 as ``dummy``, and relabel your filesystem.

~ [ source navigation ] ~ [ diff markup ] ~ [ identifier search ] ~

kernel.org | git.kernel.org | LWN.net | Project Home | SVN repository | Mail admin

Linux® is a registered trademark of Linus Torvalds in the United States and other countries.
TOMOYO® is a registered trademark of NTT DATA CORPORATION.

sflogo.php