#SELinux In Linux 6.6 Removes References To Its Origins At The US #NSA
With a lot of bad press for the NSA over the past decade due to various scandals, some #opensource enthusiasts have questioned the NSA's involvement in SELinux and made other critical remarks. While there are NSA developers that remain involved with SELinux, beginning in Linux 6.6 the "NSA" references are being dropped -- in part to reflect that it's not an NSA-only affair.
https://www.phoronix.com/news/SELinux-Drops-NSA-References
#h4ckseed Nueva Entrada: Cómo modificar la configuración de SELinux con booleanos #selinux #rockyLinux #cli #semanage #setsebool
https://h4ckseed.wordpress.com/2023/08/18/como-modificar-la-configuracion-de-selinux-con-booleanos/
#h4ckseed #selinux #RockyLinux #cli #semanage #setsebool
SELinux enforcing blocks network interface #networking #server #networkmanager #selinux #ubuntupro
#networking #server #networkmanager #selinux #ubuntupro
Brett Anderson recently contributed another cool looking SELinux logo to the community. You can find it in the selinux-artwork repository on GitHub.
Hello my #linux friends. I'm in the planning stages of standing up two bare metal Alma Linux servers that are going to power an e-commerce site for my brother. Since these servers will be handling financial transactions, I'm thinking I'll need to enable #selinux and I've always disabled it. My setup might not pass a SOX or PCI audit without selinux properly configured.
Seeing as I'm thoroughly confused by it, and good "for dummies" refs out there?
On August 8, 2003 Linux v2.6.0-test3 was released and included the first release of SELinux in an upstream Linux kernel. Happy 20th birthday SELinux!
https://mirrors.edge.kernel.org/pub/linux/kernel/v2.6/pre-releases/ChangeLog-2.6.0-test3
Ten years ago today, Android 4.3 (Jelly Bean) was released, the first Android release to support SELinux. Happy birthday SEAndroid!
https://source.android.com/docs/security/enhancements/enhancements43
Ensuring robust security is crucial for @opensuse and all #opensource projects. Become an #SELinux pro with just one slide 😂, but don't miss out on the entire talk to deepen your knowledge 🤔. #SecurityMatters https://youtu.be/uWp6WByCYss
#opensource #selinux #securitymatters
Leer que el paso de #Ubuntu a un sistema inmutable será más amigable para novatos me da la risa.
El uso de #Snap va en contra del principio #KISS, del minimalismo. Es un caso de sobreingeniería. La única ventaja de Snap o Flatpak es el confinamiento. Dicho confinamiento se consigue mediante #AppArmor o #SELinux. La generación automática de perfiles #AppArmor se puede aplicar a cualquier aplicación en el momento de crear el archivo de distribución en base a los mismos permisos genéricos que Snap actualmente utiliza. Los paquetes Deb o RPM tienen la información de los archivos instalados por lo que se puede rastrear su estado y cambiar mediante una interfaz gráfica y botones los parámetros básicos de sus perfiles, como se hace con Snap.
#ubuntu #kiss #apparmor #selinux #snap
Introduction to SELinux
Check it out! 👇
https://github.blog/2023-07-05-introduction-to-selinux/
#Selinux #MandatoryAccessControl #LinuxSecurityModel #GithubSecurityLab #Security #Education
#selinux #mandatoryaccesscontrol #linuxsecuritymodel #githubsecuritylab #security #education
It was recently suggested that my SELinux and audit kernel highlights might be more useful if I wrote them during the merge window instead of waiting for the proper kernel release. With that in mind, here are the highlights from the SELinux and audit pull requests for Linux v6.5:
https://www.paul-moore.com/blog/d/2023/06/linux_v65_merge_window.html
Linux v6.4 was released on Sunday and while there are no audit updates worth mentioning, there were some significant SELinux changes: