From 10a79e10fe102d8eea69cce38cec2ec37610448a Mon Sep 17 00:00:00 2001 From: Michael Wade <4274104+savvyspoon@users.noreply.github.com> Date: Sat, 17 Oct 2020 03:41:23 -0600 Subject: [PATCH] semanage: add page (#4353) --- pages/linux/semanage.md | 24 ++++++++++++++++++++++++ 1 file changed, 24 insertions(+) create mode 100644 pages/linux/semanage.md diff --git a/pages/linux/semanage.md b/pages/linux/semanage.md new file mode 100644 index 000000000..ac46bd4cc --- /dev/null +++ b/pages/linux/semanage.md @@ -0,0 +1,24 @@ +# semanage + +> SELinux Policy Management tool. +> More information: . + +- Output local customizations: + +`semanage -S {{store}} -o {{path/to/output_file}}` + +- Take a set of commands from a specified file and load them in a single transaction: + +`semanage -S {{store}} -i {{path/to/input_file}}` + +- Manage booleans. Booleans allow the administrator to modify the confinement of processes based on the current configuration: + +`semanage boolean -S {{store}} {{--delete|--modify|--list|--noheading|--deleteall}} {{-on|-off}} -F {{boolean|boolean_file}}` + +- Manage policy modules: + +`semanage module -S {{store}} {{--add|--delete|--list|--modify}} {{--enable|--disable}} {{module_name}}` + +- Disable/Enable dontaudit rules in policy: + +`semanage dontaudit -S {{store}} {{on|off}}`