All of lore.kernel.org
 help / color / mirror / Atom feed
* policy to systemd
@ 2024-12-21  2:23 Russell Coker
  0 siblings, 0 replies; only message in thread
From: Russell Coker @ 2024-12-21  2:23 UTC (permalink / raw)
  To: selinux-refpolicy

[-- Attachment #1: Type: text/plain, Size: 512 bytes --]

I've attached an early version of a program to generate systemd security 
settings from SE Linux policy.  The aim of this is to lock down daemons on 
non-SE systems while using tested policy and to also act as a second level of 
security on SE Linux systems while giving a lower score for "systemd-analyze 
security".

Anyone have any ideas for how to automatically determine SystemCallFilter 
values from policy?

-- 
My Main Blog         http://etbe.coker.com.au/
My Documents Blog    http://doc.coker.com.au/

[-- Attachment #2: pol2systemd.pl --]
[-- Type: application/x-perl, Size: 4183 bytes --]

^ permalink raw reply	[flat|nested] only message in thread

only message in thread, other threads:[~2024-12-21  2:28 UTC | newest]

Thread overview: (only message) (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2024-12-21  2:23 policy to systemd Russell Coker

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.