Zabbix 4.2 中文手册Database error handling 257 15 Zabbix sender dynamic link library for Windows 257 16 Issues with SELinux 258 1. 简介 258 1 手册结构 258 2 Zabbix 介绍 259 3 Zabbix 功能 259 4 Zabbix 概述 260 2. 定义 261 zabbix_sender_info_t; ## 16 Issues with SELinux Socket-based inter-process communication has been added since Zabbix 3.4. On systems where SELinux is enabled it may be required to add SELinux rules to allow Zabbix create/use 在PostgreSQL使用DBHost=。您可能希望保留默认设置DBHost=localhost(或IP地址),但这会使PostgreSQL使用网络套接字连接到Zabbix。有关说明,详见下面的SELinux配置。 启动Zabbix server进程 运行以下命令以启动Zabbix server进程: # service zabbix-server start 并在系统启动时让它自启: RHEL0 码力 | 1869 页 | 13.68 MB | 2 年前3
鸟哥的Linux私房菜:服务器架设篇 第三版第二部分:主机的简易资安防护措施 10. 第七章、网络安全与主机基本防护:限制端口,网络升级与 SELinux 10.1.7.1 网络封包联机进入主机的流程 10.2.7.2 网络自动升级软件 10.3.7.3 限制联机埠口 (port) 10.4.7.4 SELinux 管理原则 10.5.7.5 被攻击后的主机修复工作 10.6.7.6 重点回顾 器的章節。 這本書是以 CentOS 6 為範例來介紹的,這個版本的 Linux 有很多與以前不一樣的服務設定,常常會讓人找不到熟悉的設定檔位置。 而且筆者使用 SELinux 預設啟動的模式來進行伺服器的設定,加入 SELinux 後,整個伺服器的設定就顯的有些難度哩!此外,以前沒有用過的 NetworkManager 服務也來湊一腳,所以老是會讓人搞到滿腦子混亂~筆者光是重複測試之前版本與此版本的對應, 务器软件的功能。而该功能又得要通过 SELinux 这个细部权限设定的项目后,才能够读取到文件系统。但能不能读到文件系统呢?这又跟文件系统的权限(rwx)有关啦!上述的每个部分都要能够成功,否则就无法顺利读取数据啰。 所以,根据上面的流程我们大概可以将整个联机分为几个部分,包括:网络、服务器本身、内部防火墙软件设定、各项服务配置文件、细部权限的 SELinux 以及最终最重要的档案权限。底下就分几个细项来谈谈啰。0 码力 | 795 页 | 17.63 MB | 2 年前3
鸟哥的 Linux 私房菜:基础学习篇 第四版15.5 重点回顾17.5 15.6 本章习题17.6 第十六章、程序管理与SELinux初探18 16.1 什么是程序(process)18.1 16.2 工作管理(job control)18.2 16.3 程序管理18.3 16.4 特殊文件与程序18.4 16.5 SELinux初探18.5 16.6 重点回顾18.6 16.7 本章习题18.7 16 2 bzip2, bzcat/bzmore/bzless/bzgrep 8.2.3 xz, xzcat/xzmore/xzless/xzgrep - 8.3 打包指令: tar, 解压后的 SELinux 课题 - 8.4 XFS 文件系统的备份与还原 - 8.4.1 XFS 文件系统备份 xfsdump - 8.4.2 XFS 文件系统还原 xfsrestore 8.5 可唤醒停机期间的工作任务 ☐ 15.4.1 什么是 anacron ☐ 15.4.2 anacron 与 /etc/anacrontab 15.5 重点回顾 15.6 本章习题 ## 第十六章 程序管理与 SELinux 初探 一个程序被载入到内存当中运行,那么在内存内的那个数据就被称为程序(process)。程序是操作系统上非常重要的概念,所有系统上面跑的数据都会以程序的型态存在。那么系统的程序有哪些状态……2015/08/080 码力 | 1158 页 | 13.73 MB | 2 年前3
鸟哥的Linux私房菜:基础学习篇 第四版15.6 本章习题 18. 第十六章、程序管理与 SELinux 初探 18.1.16.1 什么是程序(process) 18.2.16.2 工作管理(job control) 18.3.16.3 程序管理 18.4.16.4 特殊文件与程序 18.5.16.5 SELinux 初探 18.6.16.6 重点回顾 18 15.3 循环执行的例行性工作调度 • 17.4. 15.4 可唤醒停机期间的工作任务 • 17.5. 15.5 重点回顾 • 17.6. 15.6 本章习题 ## 第十六章 程序管理与 SELinux 初探 一个程序被载入到内存当中运行,那么在内存内的那个数据就被称为程序(process)。程序是操作系统上非常重要的概念,所有系统上面跑的数据都会以程序的型态存在。那么系统的程序有哪些状态……2015/08/08 什么是程序(process) • 18.2. 16.2 工作管理(job control) • 18.3. 16.3 程序管理 18.4.16.4 特殊文件与程序 • 18.5. 16.5 SELinux 初探 • 18.6. 16.6 重点回顾 • 18.7. 16.7 本章习题 18.8.16.8 参考资料与延伸阅读 ## 第五部分:Linux 系统管理员 嗯!终于来到系统管理员(0 码力 | 1057 页 | 14.60 MB | 2 年前3
Linux command line for you and me Documentation Release 0.1Debian systems ..... 71 10.18 Unattended upgrades in Debian systems ..... 71 11 SELinux ..... 73 11.1 SELinux Modes ..... 74 11.2 getenforce ..... 74 11.3 setenforce ..... 74 11.4 Labels/Contexts Labels/Contexts ..... 75 11.5 Checking contexts of files/directories or processes ..... 75 11.6 SELinux booleans ..... 76 12 File system mounting ..... 77 12.1 Connecting USB drives to your system ... slice/myserver.service -21019 /usr/bin/sh /usr/sbin/myserver 21020 python3 -m http.server 80 Mar 12 10:03:25 selinux systemd[1]: Started My Web Server. #### 8.17.1 Verifying the service We can verify that our new0 码力 | 128 页 | 716.99 KB | 2 年前3
CentOS 7 操作命令-基础篇1.2文件名的时间为登录的时间,IP 为客户端的公网 IP ## 三十九、 SeLinux SELinux(Security Enhanced Linux)是一个强制访问控制系统,是从 Linux2.6 内核开始提供的基于“域-类型”模型的强制访问控制安全系统,开启了 SELinux 后,系统进程对文件资源的访问又多了一层访问权限控制。 SELinux 的控制思路是:对进程进行分类,对资源进行分类,然后指定某类进程只能访问某类资源,这样即使进程是以 开启 selinux,当以 root 身份运行某个进程时,该进程就能访问所有的资源,这是非常危险的。 ①启用 selinux #cat /etc/sysconfig/selinux //查看 selinux 的主配置文件,这是个链接文件,实际指向 // /etc/selinux/config 这个文件,只有 2 个参数要配置 SELINUX = enforcing //selinux 的启用状态 的启用状态 ..... SELINUXTYPE = targeted //selinux 的类型 参数说明: SELINUX = disabled //不启用 selinux permissive //启用,违反策略时不会限制访问,只会记录日志 enforcing //启用,违反策略时会阻止访问目标文件 SELINUXTYPE = targeted //只对主要的网络服务进程访问资源时 进行限制0 码力 | 115 页 | 8.68 MB | 2 年前3
Linux就该这么学 第2版249 第 10 章 使用 Apache 服务部署静态网站 ..... 251 10.1 网站服务程序 ..... 251 10.2 配置服务文件参数 ..... 254 10.3 SELinux 安全子系统 ..... 257 10.4 个人用户主页功能 ..... 260 10.5 虚拟主机功能 ..... 264 10.5.1 基于 IP 地址 ..... 265 ## 访问 Linux 文件系统; 管理 Linux 网络; 使用 Kickstart 安装红帽企业版 Linux; 管理文件系统和逻辑卷; 管理计划作业; 访问网络文件系统; 管理 SELinux; 控制防火墙; 执行故障排除任务。  服务部署静态网站:本章通过对比当前主流的 Web 服务程序来使读者更好地理解各自的优势及特点,并真正掌握在 Linux 系统中配置服务的技巧。本章还详细讲解了 SELinux 服务的作用、三种工作模式以及策略管理方法,确保读者掌握 SELinux 域和 SELinux 安全上下文的配置方法。 第 11 章,使用 vsftpd 服务传输文件:本章讲解了什么是文件传输协议(File Transfer Protocol,FTP),以及如何部署0 码力 | 552 页 | 22.25 MB | 2 年前3
Linux command line for you and me Documentation Release 0.1Debian systems • SELinux • SELinux Modes • getenforce • setenforce • Labels/Contexts • Checking contexts of files/directories or processes • SELinux booleans • File service - 21019 /usr/bin/sh /usr/sbin/myserver - 21020 python3 -m http.server 80 Mar 12 10:03:25 selinux systemd[1]: Started My Web Server. ## V erifying the service We can verify that our new webservice [Image](/uploads/documents/4/5/5/a/455a40d7374a67b0861fef1c8d80195c/p83_1.jpg) Security-Enhanced Linux (SELinux) is a Linux kernel security module that provides a way to have access control security policies.0 码力 | 124 页 | 510.85 KB | 2 年前3
PostgreSQL和Greenplum 数据库故障排查resql\_t:s0| |tcontext=system\_u:object\_r:var\_lib\_t:s0 tclass=lnk\_file| ## 查看 SELinux 的状态 # sestatus |SELinux status:|enabled| |---|---| |SELinuxfs mount:|/姬| |Current mode:|enforcing| |Mode from file:|targeted| 解决方法: 禁用 SELINUX cat /etc/SELinux/config | grep SELINUX sed -i 's/SELINUX=targeted/SELINUX=disabled/' /etc/SELINUX/config cat /etc/SELinux/config | grep SELINUX 安全增强型 Linux(Security-Enhanced Linux(Security-Enhanced Linux)简称 SELinux,它是一个 Linux 内核模块,也是 Linux 的一个安全子系统。SELinux 主要由美国国家安全局开发。2.6 及以上版本的 Linux 内核都已经集成了 SELinux 模块。SELinux 主要作用就是最大限度地减小系统中服务进程可访问的资源。 [root@tarl ~]# service postsgrsgl-11 restart0 码力 | 84 页 | 12.61 MB | 2 年前3
VMware Tanzu Greenplum v6.21 DocumentationSpace Requirements for Metadata and Logs 331 Configuring Your Systems 332 Disable or Configure SELinux 333 Disable or Configure Firewall Software 333 Recommended OS Parameters Settings 334 The hosts cannot be used on the segment host systems. Important: For all Greenplum Database host systems, if SELinux is enabled in Enforcing mode then the Greenplum process and users can operate successfully in the the default Unconfined context. If increased confinement is required, then you must configure SELinux contexts, policies, and domains based on your security requirements, and test your configuration to ensure0 码力 | 2025 页 | 33.54 MB | 2 年前3
共 230 条
- 1
- 2
- 3
- 4
- 5
- 6
- 23
相关搜索词
Zabbix监控触发器可加载模块SELinux服务器架设网络基础CentOS登录档Linux安装实作权限系统资源计算机概论磁盘分区Shell ScriptsCentOS 7rm commandcp commandmv commandtree commandls command命令操作系统运行级别sudo权限服务管理Linux 系统RHEL 8开源软件虚拟机Shell 命令greplskill文件系统用户组管理PostgreSQLGreenplumgpadmingpstartgprecoversegGreenplum DatabaseTanzu GreenplumMPP数据库contrib模块vSAN













