[DSE-Dev] CONFIG_SECURITY_SELINUX_CHECKREQPROT_VALUE

Christian Göttsche cgzones at googlemail.com
Tue Apr 11 14:53:23 UTC 2017


I am using the boot flag *checkreqprot=0* without any complications or
policy changes.

@Laurent
if you are willing, one could alter the selinux-activate script to set
the boot flag

@Ben
> Maybe we'll go with the new default for buster.
if there are no objections from the Debian SELinux team or users, please do so



More information about the SELinux-devel mailing list