# setsebool -P httpd_enable_cgi 1 #httpd被设置允许cgi被执行 # setsebool -P httpd_enable_homedirs 1 #允许访问用户的根目录 # setsebool -P httpd_tty_comm 1 #允许httpd控制终端 # setsebool -P httpd_unified 0 #httpd之间相互独立 # setsebool -P httpd_builtin_ing 0 #同httpd环境一样运行 # s...
# setsebool -P httpd_tty_comm 1 #允许httpd控制终端 # setsebool -P httpd_unified 0 #httpd之间相互独立 # setsebool -P httpd_builtin_ing 0 #同httpd环境一样运行 # setsebool -P httpd_can_network_connect 1 #httpd可以连接到网络 # setsebool -P httpd_suexec_disable_trans 1 #禁用suexec过度 # ...
getsebool httpd_can_network_connect #获取 httpd_can_network_connect 布尔值的当前状态 1. 2. 8.2setsebool命令(设置SELinux布尔值的状态) 格式:setsebool -P <boolean_name> <value> #-P 选项用于永久性地设置布尔值的状态。如果省略 -P 选项,那么设置的状态只在当前会话中有效。 #<boolean_name> 是要设置...
setsebool -P httpd_enable_homedirs 1 chcon -R -t httpd_sys_content_t ~user/public_html //httpd is allowed access to the controling terminal setsebool -P httpd_tty_comm 1 //such that one httpd service can not interfere with another setsebool -P httpd_unified 0 //loadable modules run un...
setsebool -P httpd_can_network_connect 1 // You can disable suexec transition setsebool -P httpd_suexec_disable_trans 1 //You can disable SELinux protection for the httpd daemon by executing setsebool -P httpd_disable_trans 1 service httpd restart ...
setsebool -P httpd_can_network_connect 1 #httpd可以连接到网络(如连接redis就必须设置) setsebool -P httpd_read_user_content 1 #开启用户文件的访问权限(如日志文件就必须设置) setsebool -P httpd_suexec_disable_trans 1 #禁用suexec过度 setsebool -P httpd_disable_trans 1 #允许daemon用户启动httpd ...
When I runsetsebool -P httpd_can_network_connect 1, soft lockups occur wheresetseboolis trying to take the selinux policy rwlock that has been taken by the task itself in the same context. Raw [ 208.016133] watchdog: BUG: soft lockup - CPU#1 stuck for 22s! [splunkd:2015] [ 208.0173...
linuxsetsebool httpd_can_network_connect=1 “` 需要注意的是,只有具有管理员权限的用户才能使用`linuxsetsebool`命令。 通过使用`linuxsetsebool`命令,您可以更好地控制和管理系统的安全性,并根据需要调整SElinux的安全策略。 1. 概述 linuxsetsebool命令是在Linux系统中用于设置SELinux(Security-Enhanced Linux)布尔类...
setsebool -P httpd_unified 0 //loadable modules run under the same context as httpd setsebool -P httpd_builtin_scripting 0 //httpd scripts are allowed to connect out to the network setsebool -P httpd_can_network_connect 1 // You can disable suexec transition ...
setsebool -P httpd_can_network_connect 1 #httpd可以连接到⽹络(如连接redis就必须设置)setsebool -P httpd_read_user_content 1 #开启⽤户⽂件的访问权限(如⽇志⽂件就必须设置)setsebool -P httpd_suexec_disable_trans 1 #禁⽤suexec过度 setsebool -P httpd_disable_trans 1 #允许...