[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]

selinux / semodule question



I've been trying to understand selinux on my laptop. 
I'm running rawhide.  I have SELINUX=enforcing and SELINUXTYPE=targeted.
I've had a few audit messages when I try to use NetworkManager & a vpn connection. 
To debug it, I ran audit2why and saw that all of the denied where from a missing or disabled
TE.
I have ran (I'm sure there are other ways)

audit2why < /var/log/audit/audit.log | audit2allow -M local

and then ran semodule -i local.pp

It seem to have loaded the local.pp.

Do I need to put the "semodule -i local.pp" in a rc.local for each boot?  Or is it automagic?

Thanks.

[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]