#SELinux

2025-12-05

Archivierung und Kompression mit tar: Grundlagen, Optionen und Beispiele

tar (Tape Archiver) ist das Standard-Archivierungswerkzeug unter Linux, das mehrere Dateien und Ordner zu einem einzigen Archiv bündelt. Im Gegensatz zu gzip, bzip2 und xz komprimiert tar nicht selbst, sondern arbeitet mit Kompressionstools zusammen (z, j, J). Es erhält vollständige Metadaten inklusive Berechtigungen und SELinux-Kontexte. Wichtige Optionen von tar -c (create) : Erstellt ein neues Archiv. -f (file name). : Gibt den Dateinamen des Archivs an. # Einen Ordner […]

andreas-moor.de/archivierung-u

2025-12-05

Vergleich von Archivierung und Kompression unter Linux: tar/star, gzip, bzip2, xz und zip

Archivierungs- und Kompressionstechniken sind wichtige Werkzeuge, um Dateien und Verzeichnisse unter Linux effizient zu speichern. Dabei unterscheidet man zwischen der Archivierung, bei der mehrere Dateien zu einer Einheit gebündelt werden, und der Kompression, bei der die Datenmenge verkleinert wird. Archivierung und Kompression: tar als Pflicht für Ordner tar ist das Standardwerkzeug für die Archivierung von Ordnern unter Linux. Es bündelt Dateien und Verzeichnisse in einem Archiv, […]

andreas-moor.de/vergleich-von-

2025-12-04

Highlights from the LSM, SELinux, and audit pull requests that have been merged for Linux v6.19.

paul-moore.com/blog/d/2025/12/

#lsm #selinux #audit

2025-12-01

[Перевод] SELinux: интеграция с Zabbix и другими инструментами

Всем привет! Мы делаем проекты по Zabbix, накопили большую экспертизу и решили сделать переводы нескольких статей, которые нам показались интересными и полезными. Наверняка, будут полезны и вам. Также своим опытом делимся в телеграм-канале zabbix_ru , где вы можете найти полезные материалы и записи наших вебинаров, опубликованных на нашем ютуб-канале (прим. переводчика). Миграция с MySQL на PostgreSQL — первая статья цикла переводов. В этой статье подробно рассмотрены основы SELinux, его правильная интеграция с Zabbix и способы эффективного создания собственных политик SELinux для решения распространённых проблем. Также показано, как контролировать SELinux непосредственно в Zabbix, что поможет повысить безопасность системы и упростить повседневное администрирование. Данное руководство предназначено для дистрибутивов на основе RPM (RHEL, CentOS, Rocky Linux, AlmaLinux, Fedora, …).

habr.com/ru/articles/970716/

#zabbix #linux #selinux #gals_software

Entony.42Entony42
2025-12-01

The world needs a enrypted, whith , and the to attack Microsoft. Right now, would be perfect :owi:

TugaTech 🖥️tugatech@masto.pt
2025-11-18
/dev/urandomrnd@toot.cat
2025-11-14

i get a bit annoyed at #linux commenters who look at #wayland's efforts to isolate app windows from each other and go "this is pointless, because all apps run as the same user anyway and a malicious/exploited app can therefore still steal all the data it wants"

like, yes, but we also have things like #apparmor and #selinux to prevent apps from doing what they shouldn't in case of being hacked

and #flatpak can isolate its apps even further

there is no one perfect app security solution, and on a desktop computer, where the end user is in charge (unlike smartphones and tablets), there will never be, but there are still improvements being made

Kushal Das :python: :tor: 🇸🇪kushal@toots.dgplug.org
2025-11-12

@woodstock In total Debian + some Ubuntu environment, that is why not thinking much about using #SELinux :)

Lars Marowsky-Brée 😷larsmb@mastodon.online
2025-11-09

Seriously, #SELinux. I think that on most Linux desktops and even home servers, it's complete security theater and needs to be taken out behind the shed and disabled by default.
Ridiculous.

Did users actually ask for this? I guarantee you they did not.

Lars Marowsky-Brée 😷larsmb@mastodon.online
2025-11-09

I set up #garage as an S3 endpoint locally so I can have the same backup target mode in my internal network.

Let's just say that, at least with the default settings, that's not friendly to a USB HDD.

I replaced it with a CIFS share which was flawless and much faster.

Except for the fuckery that is #SELinux that I had to figure out before the export could actually be written to.

But you know what? I can't be arsed. That's an #ansible task that a LLM spits out before I've read the manpage.

2025-11-09

Leap 16 kicks off a new era for #openSUSE. #2038-safe, #SELinux by default, improved migration tools, and parallel package downloads. Read the full announcement: news.opensuse.org/2025/10/01/n #Linux #Endof10

Tradeless EarthPrPl@todon.eu
2025-11-07

Why hacking is healthy?

I recommend this video to people who don't know much about hacking, privacy and security.

youtu.be/qFsj6KL8_nU

#hacking #privacy #security #selinux #defcon

The Linux Lighthousethelinuxlighthouse
2025-11-04

openSUSE 16 walked into Fedora’s room like:
“Nice setup… mind if I copy it?” 😏

Fedora: Anaconda WebUI, Cockpit, SELinux, Ansible, Btrfs (no Snapper).

openSUSE: Agama Web Installer, Cockpit, SELinux, Snapper + Btrfs, Ansible.

Basically Fedora with an undo button.
Different wallpaper, same playbook.😆

2022-10-23

SELinux: The Good, The Bad and The Worst ― Luca Fusè

video.linux.it/videos/watch/38

Thorsten Leemhuis (acct. 2/4)knurd42@social.linux.pizza
2025-10-29

#SUSE #Linux Enterprise Server (SLES) 16 is out:

suse.com/news/suse-linux-enter

See this blog post for a broad overview of what's new:

suse.com/c/what-is-new-in-suse

Like #Cockpit as "Modern, Web-Based Server Management" tool, #Ansible integration, the transition to #SELinux, and #NetworkManager as the sole networking stack (replacing wicked).

#LinuxDistribution

Logo from the first linked page

The three genders

#SELinux

Partial screenshot from /etc/selinux/config showing "SELinux can take one of ... # enforcing # permissive # disabled"

Who be up #selinux ing they #debian

Michal Vyskočilvyskocilm@witter.cz
2025-10-22

Finally upgraded to @opensuse Leap 16.0 - the github.com/openSUSE/opensuse-m by @lkocman worked like a charm.

openSUSE-2gb-fsn1-1:~ # cat /etc/os-release
NAME="openSUSE Leap"
VERSION="16.0"

SELinux is finally enabled and enforcing and after new policy forgejo-runner quadlet can talk to user podman socket again.

#openSUSE #SELinux #selfhosted

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst