Hi,
I mean was, how can I sure SELinux protecting my server services?
On Monday, August 19, 2019, 6:38:10 PM GMT+4:30, Lukas Vrabec <lvrabec@xxxxxxxxxx> wrote:
On 8/17/19 6:57 AM, Jason Long wrote:
> Hello,
> What SELinux option is good for a FTP server?
>
Hi,
Sorry, I don't understand your question, what you mean by "option" ?
Your vsftpd service runs under ftpd_t SELinux domain which is correct
SELinux domain for mentioned service.
Thanks,
Lukas.
> Thanks.
>
> On Monday, August 12, 2019, 10:17:19 AM GMT+4:30, Jason Long
> <hack3rcon@xxxxxxxxx> wrote:
>
>
> Hello,
> I installed "vsftpd" service, but by default SELinux blocked it. I
> changed SELinux configuration by "setsebool -P ftpd_full_access 1", but
> I guess its mean that SELinux can't protect my "vsftpd" service. How can
> I use "vsftpd" service with SELinux enabled?
>
> Thanks.
>
> _______________________________________________
> selinux mailing list -- selinux@xxxxxxxxxxxxxxxxxxxxxxx
> To unsubscribe send an email to selinux-leave@xxxxxxxxxxxxxxxxxxxxxxx
> Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
> List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
> List Archives: https://lists.fedoraproject.org/archives/list/selinux@xxxxxxxxxxxxxxxxxxxxxxx
>
--
Lukas Vrabec
Senior Software Engineer, Security Technologies
Red Hat, Inc.
_______________________________________________> Hello,
> What SELinux option is good for a FTP server?
>
Hi,
Sorry, I don't understand your question, what you mean by "option" ?
Your vsftpd service runs under ftpd_t SELinux domain which is correct
SELinux domain for mentioned service.
Thanks,
Lukas.
> Thanks.
>
> On Monday, August 12, 2019, 10:17:19 AM GMT+4:30, Jason Long
> <hack3rcon@xxxxxxxxx> wrote:
>
>
> Hello,
> I installed "vsftpd" service, but by default SELinux blocked it. I
> changed SELinux configuration by "setsebool -P ftpd_full_access 1", but
> I guess its mean that SELinux can't protect my "vsftpd" service. How can
> I use "vsftpd" service with SELinux enabled?
>
> Thanks.
>
> _______________________________________________
> selinux mailing list -- selinux@xxxxxxxxxxxxxxxxxxxxxxx
> To unsubscribe send an email to selinux-leave@xxxxxxxxxxxxxxxxxxxxxxx
> Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
> List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
> List Archives: https://lists.fedoraproject.org/archives/list/selinux@xxxxxxxxxxxxxxxxxxxxxxx
>
--
Lukas Vrabec
Senior Software Engineer, Security Technologies
Red Hat, Inc.
selinux mailing list -- selinux@xxxxxxxxxxxxxxxxxxxxxxx
To unsubscribe send an email to selinux-leave@xxxxxxxxxxxxxxxxxxxxxxx
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/selinux@xxxxxxxxxxxxxxxxxxxxxxx
_______________________________________________ selinux mailing list -- selinux@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to selinux-leave@xxxxxxxxxxxxxxxxxxxxxxx Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/selinux@xxxxxxxxxxxxxxxxxxxxxxx