SELinux 설정

CODEDRAGON Security/Linux

반응형

  

SELinux 설정

·         SELinux 설정 파일

·         SELinux 설정 변경

 

 

SELinux 설정 파일

/etc/sysconfig/selinux

 

# This file controls the state of SELinux on the system.

# SELINUX= can take one of these three values:

#     enforcing - SELinux security policy is enforced.

#     permissive - SELinux prints warnings instead of enforcing.

#     disabled - No SELinux policy is loaded.

SELINUX=enforcing

# SELINUXTYPE= can take one of these three values:

#     targeted - Targeted processes are protected,

#     minimum - Modification of targeted policy. Only selected processes are protected.

#     mls - Multi Level Security protection.

SELINUXTYPE=targeted

 

 

SELinux 설정 변경

SELinux를 설정하기 위해서 먼저, 리눅스의 보안을 관리하는 SELinux의 설정 파일을 vi 편집기로 엽니다.

disabled로 수정하여 FTP 서버가 잘 운영되도록 설정하고 설정 파일을 수정했으면 리눅스를 재부팅합니다.

 

vi /etc/sysconfig/selinux

# This file controls the state of SELinux on the system.

# SELINUX= can take one of these three values:

#     enforcing - SELinux security policy is enforced.

#     permissive - SELinux prints warnings instead of enforcing.

#     disabled - No SELinux policy is loaded.

SELINUX=disabled

# SELINUXTYPE= can take one of these three values:

#     targeted - Targeted processes are protected,

#     minimum - Modification of targeted policy. Only selected processes are protected.

#     mls - Multi Level Security protection.

SELINUXTYPE=targeted