Ubuntu默认不启用SELinux,若需更新其版本,需先安装相关工具和策略,步骤如下:
sudo apt update
sudo apt install selinux-basics selinux-policy-default auditd setools
sudo selinux-activate # 激活SELinux(需重启生效)
sudo ausearch -m avc -ts recent | audit2why
sudo ausearch -m avc -ts recent | audit2allow -M my_policy # 生成策略模块
sudo semodule -i my_policy.pp # 安装策略模块
/etc/selinux/config)修改模式(enforcing/permissive)。sudo reboot
注意: