|
|
|
|
|
by ok123456
649 days ago
|
|
I've seen poorly implemented SELinux policies make a workstation unusable and fill up /var with audit.logs that are tens of gigs. You have to do 100% coverage testing on whatever program you're using. (Good luck if you don't have the source code.) Otherwise, you don't have any guarantee that your program won't seemingly be killed randomly. Good luck, x2, if you have some snake oil "endpoint security" that keeps overriding your SELinux policy changes. |
|