1. Home
  2. Security Hardening
  3. CIS Ubuntu Linux 14.04 LTS Workstation L2 V2.1.0
  4. Ensure SELinux policy is configured – ‘Policy from config file’

Ensure SELinux policy is configured – ‘Policy from config file’

Details

Configure SELinux to meet or exceed the default targeted policy, which constrains daemons and system software only. Security configuration requirements vary from site to site. Some sites may mandate a policy that is stricter than the default policy, which is perfectly acceptable. This item is intended to ensure that at least the default recommendations are met.

Solution

Edit the /etc/selinux/config file to set the SELINUXTYPE parameter: SELINUXTYPE=ubuntu

Supportive Information

The following resource is also helpful.

This security hardening control applies to the following category of controls within NIST 800-53: Access Control.This control applies to the following type of system Unix.

References

Source

Updated on July 16, 2022
Was this article helpful?

Related Articles