December 2015
Intermediate to advanced
250 pages
4h 41m
English
In some cases, you'll need to create a new SELinux policy—for instance, when installing a piece of software from source. Although I do not recommend installing software from source on enterprise systems, this is sometimes your only option for company-developed software.
It is then time to create your own SELinux policy.
For this recipe, you need to have policycoreutils-python installed.
We'll use the denied entries in the audit.log log file to build our SELinux policy with audit2allow.
In this recipe, we'll use the same example as in the previous recipe: the SELinux context of /var/www/html/index.html that is changed to system_u:object_r:user_home_t:s0. Perform the following steps: