[Discuss] SELinux & IPTables

Greg Rundlett (freephile) wrote:
> It's rather (annoyingly) humorous that there is a webpage at the NSA
> titled "Current State of SELinux"
> which is
> a blank white page.

That's funny.

Regardless, my suggestion not to use SELinux has nothing to do with the 
NSA. It's because SELinux is the wrong tool most of the time. If you 
don't need multi-level access control then AppArmor offers at least as 
good protection as the SELinux targeted policy (which was designed to 
emulate AppArmor's functionality) in a more easily managed form.

Rich P.

BLU is a member of BostonUserGroups
