Ubuntu默認不啟用SELinux,若需更新其版本,需先安裝相關工具和策略,步驟如下:
sudo apt update
sudo apt install selinux-basics selinux-policy-default auditd setools
sudo selinux-activate # 激活SELinux(需重啟生效)
sudo ausearch -m avc -ts recent | audit2why
sudo ausearch -m avc -ts recent | audit2allow -M my_policy # 生成策略模塊
sudo semodule -i my_policy.pp # 安裝策略模塊
/etc/selinux/config
)修改模式(enforcing/permissive)。sudo reboot
注意: