Search

Items tagged with: SELinux

Klaus Weidenbach
11 years ago
a labeling system
Great article by Dan Walsh about #SELinux and using labels.

SELinux is a labeling system. First thought should be "Is there a label that would make this work?"

On the SELinux mail list today, someone asked: I want to store the logs from openswan into a different file ( /var/log/ipsec ) than the default. For this purpose I added plutostderrlog=/var/log/ipsec to ipsec.conf. As long as I keep the server in permissive mode, openswan…
Categories: SysAdmin [remove]
Klaus Weidenbach
11 years ago
KISS
Last week I have read this blog post from last summer about #systemd and what philosophically changes happening in the basic concepts of Linux.

Linux Future | PAPPP's Rambling

Some time ago I came across yet another angry discussion [1]about systemd, and have been reading and thinking a great deal about the design of Systemd, and what it says about Linux. I’ve come to realize that the strife in the Linux community is because an active and well-funded group of developers who have been driving the direction of various co...

I think it has some really intersting points and mostly I agree with it. Yesterday I came across another interesting blog post by Lennart Poettering which is explaining some myths about systemd.

Wunschkonzert, Ponyhof und Abenteuerspielplatz

Since we first proposed systemd for inclusion in the distributions it has been frequently discussed in many forums, mailing lists and conferences. In these discussions one can often hear certain myths about systemd, that are repeated over and over again, but certainly don't gain any truth by constant repetition. Let's take the time to debunk a few ...

I haven't done much with systemd yet, but his points sound reasonable and as a sysadmin I can understand it good and would like to have some of these features, too. But I think it is really a more philosophically question and I am quite ambivalent. I really love #Slackware for its #KISS principles and use it since many years because of this. But I also like working with #SELinux, #Kerberos and I also see some benefits for systemd.

It is also intersting to look at developments like #TYPO3 #Flow with a very strong Convention over configuration pattern which is also following KISS principles actually.
Klaus Weidenbach
12 years ago
Installing #ownCloud 4.5 was very smooth. #Mediagoblin is still not configured correctly. :( Problems with the db connection when accessed through #FastCGI and #SELinux needs some adjustments, too.
Klaus Weidenbach
12 years ago
SELinux and Apache
Very good article about some common problems with #Apache and #SELinux. Should remember the ability to put a single process type into permissive mode.

Drupalwatchdog: Using Apache and SELinux Together | Drupal Watchdog

Daniel Walsh SELinux is a powerful tool for controlling what applications are allowed to do on your system. SELinux is a labeling system where every process and every object (files, directories, devices, network ports, etc.) gets a label. Then a large rules database, called policy, is loaded into the kernel. The kernel, based on the policy, control...
@Lazy Admin
newer older