Sep
26th
Wed
26th
SELinux vs. OpenBSD's Default Security | KernelTrap
The general opinion was that SELinux and its policy language are too complex, leading Damien Miller to note, “every medium to large Linux deployment that I am aware off has switched SELinux off. Once you stray from the default configurations that the system distributors ship with, the default policies no longer work and things start to break.”
I completely agree, everything I’ve tried to investigate using SELinux the tutorials get very confusing very quickly.