New on LowEndTalk? Please Register and read our Community Rules.
All new Registrations are manually reviewed and approved, so a short delay after registration may occur before your account becomes active.
All new Registrations are manually reviewed and approved, so a short delay after registration may occur before your account becomes active.
Which apparmor profiles or SELinux policies do you use?
I was wondering if everyone just uses default profiles of apparmor or hard core SELinux configuration? IMO apparmor is still easier to understand and manage. Currently using these profiles: https://github.com/roddhjav/apparmor.d on arch


Comments
Just the default targeted SELinux conf that comes with the distro I use, with a couple of Booleans set if needed (like the httpd can network connect thing for reverse proxy).
Then I check in Cockpit that there are no errors.