BLU Discuss list archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[Discuss] SELinux & IPTables
- Subject: [Discuss] SELinux & IPTables
- From: greg at freephile.com (Greg Rundlett (freephile))
- Date: Wed, 2 Apr 2014 12:24:20 -0400
- In-reply-to: <533C36D7.8060503@gmail.com>
- References: <CAM9bQ=hCqhSGMvm2c29Gr5ySwvUVjxkuT-=qJb98PVgi3UXk_w@mail.gmail.com> <533C36D7.8060503@gmail.com>
It's rather (annoyingly) humorous that there is a webpage at the NSA titled "Current State of SELinux" http://www.nsa.gov/research/_files/selinux/papers/x/text8.shtml which is a blank white page. The page in question is supposed to be a slide in a presentation, and can be seen here: http://www.nsa.gov/research/_files/selinux/papers/x/img8.shtml For completeness, the 'official' NSA content on SELinux is at http://www.nsa.gov/research/selinux/ Greg Rundlett http://eQuality-Tech.com http://freephile.org On Wed, Apr 2, 2014 at 12:12 PM, Richard Pieri <richard.pieri at gmail.com>wrote: > John Malloy wrote: > >> Does anyone have any suggestions for Best Practices in configuring SELinux >> & IPTables for a RedHat (RHEL6) server running Apache, PHP, and >> connecting >> to an Oracle DB (using OCI8)? >> > > Don't use SELinux unless you're required to use it. For example, US > government contracts. If you really need something along this line then > either AppArmor or GrSec are better choices. > > Otherwise, everything Mark wrote applies. > > -- > Rich P. > > _______________________________________________ > Discuss mailing list > Discuss at blu.org > http://lists.blu.org/mailman/listinfo/discuss >
- Follow-Ups:
- [Discuss] SELinux & IPTables
- From: richard.pieri at gmail.com (Richard Pieri)
- [Discuss] SELinux & IPTables
- References:
- [Discuss] SELinux & IPTables
- From: jomalloy at gmail.com (John Malloy)
- [Discuss] SELinux & IPTables
- From: richard.pieri at gmail.com (Richard Pieri)
- [Discuss] SELinux & IPTables
- Prev by Date: [Discuss] Unsubscribe
- Next by Date: [Discuss] SELinux & IPTables
- Previous by thread: [Discuss] SELinux & IPTables
- Next by thread: [Discuss] SELinux & IPTables
- Index(es):