svirt_socket_selinux - Online Linux Manual PageSection : 8
Updated : 21-04-01
Source : svirt_socket
Note : SELinux Policy svirt_socket

NAMEsvirt_socket_selinux − Security Enhanced Linux Policy for the svirt_socket processes

DESCRIPTIONSecurity-Enhanced Linux secures the svirt_socket processes via flexible mandatory access control. The svirt_socket processes execute with the svirt_socket_t SELinux type. You can check if you have these processes running by executing the ps command with the −Z qualifier. For example: ps -eZ | grep svirt_socket_t

PROCESS TYPESSELinux defines process types (domains) for each process running on the system You can see the context of a process using the −Z option to ps Policy governs the access confined processes have to files. SELinux svirt_socket policy is very flexible allowing users to setup their svirt_socket processes in as secure a method as possible. The following process types are defined for svirt_socket: svirt_socket_tNote: semanage permissive -a svirt_socket_t can be used to make the process type svirt_socket_t permissive. SELinux does not deny access to permissive process types, but the AVC (SELinux denials) messages are still generated.

BOOLEANSSELinux policy is customizable based on least access required. svirt_socket policy is extremely flexible and has several booleans that allow you to manipulate the policy and run svirt_socket with the tightest access possible. If you want to allow all domains to execute in fips_mode, you must turn on the fips_mode boolean. Enabled by default. setsebool -P fips_mode 1

COMMANDSsemanage fcontext can also be used to manipulate default file context mappings. semanage permissive can also be used to manipulate whether or not a process type is permissive. semanage module can also be used to enable/disable/install/remove policy modules. semanage boolean can also be used to manipulate the booleans system-config-selinux is a GUI tool available to customize SELinux policy settings.

AUTHORThis manual page was auto-generated using sepolicy manpage".

SEE ALSOselinux(8), svirt_socket(8), semanage(8), restorecon(8), chcon(1), sepolicy(8), setsebool(8)
0
Johanes Gumabo
Data Size   :   6,702 byte
man-svirt_socket_selinux.8Build   :   2024-12-29, 07:25   :  
Visitor Screen   :   x
Visitor Counter ( page / site )   :   3 / 258,077
Visitor ID   :     :  
Visitor IP   :   3.129.210.36   :  
Visitor Provider   :   AMAZON-02   :  
Provider Position ( lat x lon )   :   39.962500 x -83.006100   :   x
Provider Accuracy Radius ( km )   :   1000   :  
Provider City   :   Columbus   :  
Provider Province   :   Ohio ,   :   ,
Provider Country   :   United States   :  
Provider Continent   :   North America   :  
Visitor Recorder   :   Version   :  
Visitor Recorder   :   Library   :  
Online Linux Manual Page   :   Version   :   Online Linux Manual Page - Fedora.40 - march=x86-64 - mtune=generic - 24.12.29
Online Linux Manual Page   :   Library   :   lib_c - 24.10.03 - march=x86-64 - mtune=generic - Fedora.40
Online Linux Manual Page   :   Library   :   lib_m - 24.10.03 - march=x86-64 - mtune=generic - Fedora.40
Data Base   :   Version   :   Online Linux Manual Page Database - 24.04.13 - march=x86-64 - mtune=generic - fedora-38
Data Base   :   Library   :   lib_c - 23.02.07 - march=x86-64 - mtune=generic - fedora.36

Very long time ago, I have the best tutor, Wenzel Svojanovsky . If someone knows the email address of Wenzel Svojanovsky , please send an email to johanes_gumabo@yahoo.co.id .
If error, please print screen and send to johanes_gumabo@yahoo.co.id
Under development. Support me via PayPal.