December 2015
Intermediate to advanced
250 pages
4h 41m
English
SELinux booleans allow you to change the SELinux policy at runtime without the need to write additional policies. This allows you to change the policy without the need for recompilation, such as allowing services to access NFS volumes.
This is the way to temporarily or permanently change SELinux booleans.
For a list of all booleans and an explanation of what they do, execute the following:
~# semanage boolean -l

Now, let's try to get the value of a particular SELinux boolean. It is possible to get the value of a single SELinux boolean without the use of additional utilities, such as ...