Run webapp/MoinMoin as a SELinux domain

Per Sjoholm Per.t.Sjoholm at flysta.net
Sun Oct 21 14:31:07 UTC 2007


I would like to lock down different web apps run by httpd(apache).
As it is today only way to let MoinMoin send email is to allow all to 
use sendmail.
I use a db and that means that every application is allow to ...

Is it possible to have httpd confined and only open needed net resources 
for certain
apps ?
To use some form of m4 macro.
/var/www/moin/xyx/cgi-bin/moin.cgi  ->  httpd-xyz_t
/var/www/moin/xxx/cgi-bin/moin.cgi  ->  httpd-xxx_t

-- 
Per Sjöholm
Spanga, Stockholm, Sweden





More information about the fedora-selinux-list mailing list