A four-part series — the mandatory access control fundamentals, how labeling works, the on/off switches for common cases, and the troubleshooting mindset for when something gets denied.

SELinux Series

1

SELinux Basics

Modes, policies, and status — what Security-Enhanced Linux actually is and how mandatory access control works.

Read Part 1 →
2

SELinux Contexts

Labels, chcon, and restorecon — every file, process, port, and user has a context, and this is how it's managed.

Read Part 2 →
3

SELinux Booleans

getsebool, setsebool, and semanage boolean — the built-in on/off switches for common policy exceptions.

Read Part 3 →
4

SELinux Troubleshooting

audit2allow, ausearch, and sealert — SELinux problems always leave evidence; here's how to read it.

Read Part 4 →

↑ Back to EXPANDED