Fedora 10 with SELinux in Enforcing Mode

FYI,

It is possible to deploy F10 on your linode with SELinux in enforcing mode since you can run a custom kernel with pv-grub now. I've successfully got 2.6.28-linode15 kernel (recompiled with SELinux turned on) running via pv-grub on an F9 deploy that I upgraded to F10.

It requires some tweaking but it is possible!

It remains to be seen how stable 2.6.28-linode15 kernel is, though.

No problems so far.

-E

3 Replies

Why wouldn't this be enabled in the kernel by default? Running SELinux has become a common way of doing things, if not standard.

Actually, for whatever reason, SELinux is not enabled on Linode's kernels by default. Probably because most noobs complain that SELinux is the cause of their self-caused admin problems or lack of understanding, etc.

I've got a script I'll post online if someone is interested that takes F9 and upgrades it to F10 and another that builds an SELinux enabled Linode kernel and initrd automatically.

There are a few tweets to Fedora and the initrds that it generates for a new kernel to work with XEN, too.

I've been running SELinux protected F10 linode's for a few months now without problems.

I already have an FC10 image up and running. What did you have to do to get SELinux running on the Xen kernel?

Reply

Please enter an answer
Tips:

You can mention users to notify them: @username

You can use Markdown to format your question. For more examples see the Markdown Cheatsheet.

> I’m a blockquote.

I’m a blockquote.

[I'm a link] (https://www.google.com)

I'm a link

**I am bold** I am bold

*I am italicized* I am italicized

Community Code of Conduct