Redhat – Does SELinux Make Redhat More Secure?

centosredhatselinux

Does SELinux make Redhat more secure?

I can't remember the number of times when I have disabled SELinux because it kept frustrating my ability to get stuff running. Lots of times to there was no obvious reason why stuff wasn't working and I had to Google to discover why.

Given that most casual users will disable or weaken security when it appears to get in the way, with the exclusion of serious, enterprisey Redhat users, is SELinux really useful?

PS. Is there some tool that helps you log, track and manage SELinux issues across all applications?

Best Answer

Yes, Selinux makes system more secure. But you'll need to undestand concepts of it and have at least basic knowledge about selinux and audit tools.

Selinux is logging to /var/log/audit/audit.log (but ensure auditd is running), and there are number of tools to solve selinux problems. Probably simplest way is to use is audit2allow