Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Nothing about SELinux or AppArmor? While these are enabled by default on some of the big distros I think a basic guide on managing and troubleshooting would be beneficial.


Getting apparmor to stop flooding syslog with mysterious complaints is probably a full guide by itself.


Yeah, the best impact would come from using SELinux, AppArmor, and GRSec. Everything else is just tweaking defaults, which for up-to-date software probably isn't going to impact your security much at all.


I don't disagree but you gotta start with the basics. SELinux can be rather advanced/complex and probably warrants its own guide. I still have to learn it better before I try to write a guide on it.


It is on my to-do list. :)




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: