SELinux For Dummies

  Рет қаралды 32,604

Jay Paul

Jay Paul

11 жыл бұрын

SELinux For Dummies - LinuxFest Northwest 2013
Presentation by Gary Smith, Information System Security Officer, Molecular Science Computing, Pacific Northwest National Laboratory, Richland, WA.
In the beginning, the Unix file system's Discretionary Access Control (DAC) security model was simple and elegant. For decades, it was good enough for most situations but as as increasing security demands were put on DAC, it began to run out of steam.
Security Enhanced Linux (SELinux) was created by the National Security Agency (NSA) to be the most mature and complete response to the need for more secure Linux systems. Even though many distributions come with SELinux enabled by default, many system administrators disable SELinux out of fear their applications won't run. This is no longer acceptable.
Today everything from cell phones to super computers need high quality security. Imagine being able to sandbox applications such as your web browser, email client, or even a virtual machine. The traditional Linux security make this difficult or next to impossible. SELinux, however, makes this fine grain security available to everyone.
When it first arrived, SELinux seemed harder to learn and more mysterious than Quantum Mechanics. As a result, system administrators feared it. It's time to lay fear aside. SELinux for Dummies will show you what SELinux is, why it's a great addition to the security arsenal, and how to maintain and troubleshoot it.

Пікірлер: 8
@toheebadeshina5984
@toheebadeshina5984 9 жыл бұрын
great tutorial prof!!!
@stefanegelerprivat
@stefanegelerprivat 8 жыл бұрын
Wow! Thanks for this presentation :-)
@LegallyLawless
@LegallyLawless 10 жыл бұрын
Where's all the rest of these linux talks for the NW event?
@ReneBonCiric
@ReneBonCiric 10 жыл бұрын
Answers to questions: - You can get a list of possible contexts with: seinfo --type - A list of modules: semanage module -l - List your current policy: semanage fcontext -l - Sometimes you need to use audit2allow several times. Recent case: NginX accesing thin's socket at /run/thin/*.sock needed 2 audit2allow; one after another.
@scorpdevnull
@scorpdevnull 9 жыл бұрын
cool username and hostname =))
@MrMac5150
@MrMac5150 8 жыл бұрын
*Sorry but this gentleman does not belong teaching this class*.
@homes24
@homes24 7 жыл бұрын
why?
@NickFoxQuixand
@NickFoxQuixand 7 жыл бұрын
How do I computer?
Are you listening to what SELinux is telling you?
1:03:14
Red Hat Summit
Рет қаралды 13 М.
Linux Server Hardening Tips and Techniques
1:01:43
Jay Paul
Рет қаралды 12 М.
Sigma Girl Past #funny #sigma #viral
00:20
CRAZY GREAPA
Рет қаралды 25 МЛН
Неприятная Встреча На Мосту - Полярная звезда #shorts
00:59
Полярная звезда - Kuzey Yıldızı
Рет қаралды 7 МЛН
small vs big hoop #tiktok
00:12
Анастасия Тарасова
Рет қаралды 22 МЛН
FOOLED THE GUARD🤢
00:54
INO
Рет қаралды 62 МЛН
Security-Enhanced Linux for mere mortals
43:58
Red Hat Summit
Рет қаралды 122 М.
IPTables Tips and Tricks: More Than Just ACCEPT or DROP
50:40
Security-enhanced Linux for mere mortals - 2015 Red Hat Summit
52:18
Red Hat Summit
Рет қаралды 65 М.
I Hate SELinux. You Can Too. (Linux+ Objective 2.5.1)
31:23
Shawn Powers
Рет қаралды 7 М.
The Tragedy of systemd
47:18
linux.conf.au
Рет қаралды 1,1 МЛН
The Linux Audit Framework
58:50
Jay Paul
Рет қаралды 10 М.
2012 Red Hat Summit: SELinux For Mere Mortals
52:10
Red Hat
Рет қаралды 101 М.
SELinux Essentials + RHCE(TOPIC)
33:43
dolastack devops
Рет қаралды 9 М.
About SELinux
21:56
EF - Linux Made Simple
Рет қаралды 28 М.
RHEL7   SELinux controlling admin access
15:21
theurbanpenguin
Рет қаралды 10 М.
Sigma Girl Past #funny #sigma #viral
00:20
CRAZY GREAPA
Рет қаралды 25 МЛН