【Linux】CentOS下安裝semanage
安裝:# yum -y install policycoreutils-python
semanage使用方法:
/usr/sbin/semanage:semanage [ -S store ] -i [ input_file | - ]semanage [ -S store ] -o [ output_file | - ]semanage {boolean|login|user|port|interface|module|node|fcontext} -{l|D|E} [-n]semanage login -{a|d|m} [-sr] login_name | %groupnamesemanage user -{a|d|m} [-LrRP] se<a style="padding: 0px; margin: 0px; color: #333333; text-decoration: none; font-size: 13px;" title="linux" href="http://www.wzzjla.com/Html/201210/527.html">linux</a>_namesemanage port -{a|d|m} [-tr] [ -p proto ] port | port_rangesemanage interface -{a|d|m} [-tr] interface_specsemanage module -{a|d|m} [--enable|--disable] modulesemanage node -{a|d|m} [-tr] [ -p protocol ] [-M netmask] addrsemanage fcontext -{a|d|m} [-efrst] file_specsemanage boolean -{d|m} [--on|--off|-1|-0] -F boolean | boolean_filesemanage permissive -{d|a|l} typesemanage dontaudit [ on | off ]Primary Options:-a, --add Add a OBJECT record NAME-d, --delete Delete a OBJECT record NAME-m, --modify Modify a OBJECT record NAME -i, --input Input multiple semange commands in a transaction -o, --output Output current customizations as semange commands-l, --list List the OBJECTS-E, --extract extract customizable commands-C, --locallist List OBJECTS local customizations-D, --deleteall Remove all OBJECTS local customizations-h, --help Display this message-n, --noheading Do not print heading when listing OBJECTS -S, --store Select and alternate SELinux store to manageObject-specific Options (see above):-f, --ftype File Type of OBJECT"" (all files)-- (regular file)-d (directory)-c (character device)-b (block device)-s (socket)-l (symbolic link)-p (named pipe) -F, --file Treat target as an input file for command, change multiple settings-p, --proto Port protocol (tcp or udp) or internet protocol version of node (ipv4 or ipv6)-M, --mask Netmask -e, --equal Substitue source path for dest path when labeling-P, --prefix Prefix for home directory labeling-L, --level Default SELinux Level (MLS/MCS Systems only)-R, --roles SELinux Roles (ex: "sysadm_r staff_r")-s, --seuser SELinux User Name-t, --type SELinux Type for the object-r, --range MLS/MCS Security Range (MLS/MCS Systems only) --enable Enable a module --disable Disable a module
來源:http://fcjblog.com/linux-centos-install-semanage