what to use besides selinux?

Mark mhullrich at gmail.com
Tue Nov 23 00:21:11 UTC 2010


On Sun, Nov 21, 2010 at 1:50 PM, David C. Curtis
<dave.c.curtis at gmail.com> wrote:
> On Sun, 2010-11-21 at 11:27 +0100, Arthur Bela wrote:
>>
>> apt-get install selinux
>>
>> Ok. Reboot. So I'm better protected now, or i have to set a few things?
>>
>> I read that selinux is good for post-exploitation situations. What do
>> i have to google to search for solutions protecting me
>> "before-exploitations"?
>>
> You may wish to read up on 'rootkit detection' and 'intrusion
> detection'. There are a number of packages in the repos you may wish to
> make use of for both. Some useful for single computer some for multiple
> resources/network.
>
For my home machines (desktops and laptops) I routinely disable
selinux - the one time I ran with it all it did was annoy me with
warnings about things I didn't care about anyway.  I hear it's good
for a network set up, but I would second David's recommendation to
read up on those subjects and further on selinux, too.  Some people
swear by it, some swear by not it (so to speak).




More information about the ubuntu-users mailing list