mastodon.gamedev.place is one of the many independent Mastodon servers you can use to participate in the fediverse.
Mastodon server focused on game development and related topics.

Server stats:

5.1K
active users

#selinux

0 posts0 participants0 posts today
a40YOStudent<p>Setting up a reverse proxy in a <a href="https://iosdev.space/tags/podman" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>podman</span></a> <a href="https://iosdev.space/tags/rootless" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>rootless</span></a> <a href="https://iosdev.space/tags/container" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>container</span></a> ? Good for you. Did you put it in a network? No? Then it’s isolated from others containers. Yes? Then congrats, you can reach other containers by http://their-name:their-published-port. It’s not <a href="https://iosdev.space/tags/SELinux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SELinux</span></a>, it’s not the <a href="https://iosdev.space/tags/caddy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>caddy</span></a> Caddyfile, it’s just how the default Podman network works, it isolates all the containers and pods running in it. 🥵😖🤯</p>
a40YOStudent<p>I think I’m ready to hate Podman. Or SELinux. Or both. Why the hell :z does not automagically solve all my issues? <a href="https://iosdev.space/tags/podman" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>podman</span></a> <a href="https://iosdev.space/tags/selinux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>selinux</span></a></p>
aitorpazos<p>As <a href="https://fosstodon.org/tags/OpenSUSE" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OpenSUSE</span></a> Tumbleweed has moved to enforcing <a href="https://fosstodon.org/tags/SELinux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SELinux</span></a> by default[1] on new installations I decided to give it a go and committed to run in enforcing mode.<br>Turned out not as painful as I expected 🎉<br>Great guide for <a href="https://fosstodon.org/tags/opensuse_tumbleweed" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>opensuse_tumbleweed</span></a> / <a href="https://fosstodon.org/tags/opensuse_slowroll" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>opensuse_slowroll</span></a> : <a href="https://en.opensuse.org/Portal:SELinux/Setup#Setup_SELinux_on_existing_tumbleweed_systems" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">en.opensuse.org/Portal:SELinux</span><span class="invisible">/Setup#Setup_SELinux_on_existing_tumbleweed_systems</span></a> </p><p>[1] <a href="https://lists.opensuse.org/archives/list/factory@lists.opensuse.org/message/YN4TCBCU4A2V5G2MWR5EWYF46267BO7F/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">lists.opensuse.org/archives/li</span><span class="invisible">st/factory@lists.opensuse.org/message/YN4TCBCU4A2V5G2MWR5EWYF46267BO7F/</span></a></p>
Devin Prater :blind:<p>Fuck you too, SELinux.</p><p>SELinux is preventing brltty from getattr access on the chr_file /dev/bus/usb/003/073.</p><p><a href="https://tweesecake.social/tags/linux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>linux</span></a> <a href="https://tweesecake.social/tags/SeLinux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SeLinux</span></a> <a href="https://tweesecake.social/tags/fedora" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>fedora</span></a> <a href="https://tweesecake.social/tags/blind" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>blind</span></a> <a href="https://tweesecake.social/tags/brltty" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>brltty</span></a> <a href="https://tweesecake.social/tags/accessibility" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>accessibility</span></a></p>
Paul Moore<p>Linux v6.15-rc1 was released today, and here is my quick summary of the LSM and SELinux changes sent up to Linus during the Linux v6.15 merge window.</p><p>(There were no audit patches queued up for Linux v6.15, but that should change for the next merge window.)</p><p><a href="https://paul-moore.com/blog/d/2025/04/linux_v615_merge_window.html" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">paul-moore.com/blog/d/2025/04/</span><span class="invisible">linux_v615_merge_window.html</span></a></p><p><a href="https://fosstodon.org/tags/lsm" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>lsm</span></a> <a href="https://fosstodon.org/tags/selinux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>selinux</span></a> <a href="https://fosstodon.org/tags/audit" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>audit</span></a></p>
Maage<p>This allows logrotate to execute log files.<br>What are legit reasons to allow this? And why those can not be solved just by using other normal context for executables?<br><a href="https://github.com/fedora-selinux/selinux-policy/blame/383a653ea0f3f6690b6ee4dbf50bd5d1f35691cf/policy/modules/contrib/logrotate.te#L169C21-L169C21" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">github.com/fedora-selinux/seli</span><span class="invisible">nux-policy/blame/383a653ea0f3f6690b6ee4dbf50bd5d1f35691cf/policy/modules/contrib/logrotate.te#L169C21-L169C21</span></a><br><a href="https://infosec.exchange/tags/fedora" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>fedora</span></a> <a href="https://infosec.exchange/tags/selinux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>selinux</span></a></p>
FurbyOnSteroids<p>Ah.. nothing beats spending 2 hour trying to create a simple <a href="https://ohai.social/tags/systemd" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>systemd</span></a> service + timer + bash script to back up an sqlite database every week and it just not working because random permission issues just for selinux to be the culprit. Love how you need another tool to actually understand wtf <a href="https://ohai.social/tags/SELinux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SELinux</span></a> wants from you. <a href="https://ohai.social/tags/linux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>linux</span></a></p>
Da Linux beardude<p>I'll have SELinux for this Gentoo install, add in a little bit of spice to my Gentoo experience.</p><p><a href="https://mastodon.social/tags/linux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>linux</span></a> <a href="https://mastodon.social/tags/gentoo" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>gentoo</span></a> <a href="https://mastodon.social/tags/selinux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>selinux</span></a> <a href="https://mastodon.social/tags/gentoolinux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>gentoolinux</span></a></p>
Scott Williams 🐧<p>I recently read my 8 year old daughter the <a href="https://mastodon.online/tags/SELinux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SELinux</span></a> coloring book before school. I'm training up the next generation of <a href="https://mastodon.online/tags/Linux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Linux</span></a> adventurers!</p><p><a href="https://mastodon.online/tags/parenting" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>parenting</span></a> <a href="https://mastodon.online/tags/RedHat" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>RedHat</span></a></p>
LinuxNews.de<p>Dieser Montag ist zu ruhig:</p><p>- 39 ungelesene Mails<br>- DATEV fully operational 😳<br>- Monitoring still<br>- Keine weinenden User 🙁</p><p>So kann die <a href="https://social.anoxinon.de/tags/it" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>it</span></a> nicht arbeiten, wir brauchen den Kick und Erfolgserlebnisse! </p><p>Tages-Spiel-Projekt: <a href="https://social.anoxinon.de/tags/selinux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>selinux</span></a> <a href="https://social.anoxinon.de/tags/mls" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>mls</span></a>. Wer da durchsteigt, bekommt diesen Monat 500€ Prämie aufs Gehalt. Manchmal muss man sich eben eine Beschäftigung aus den Fingern saugen 😅</p><p>Let the hunger games begin 😈</p><p><a href="https://stopdisablingselinux.com/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">stopdisablingselinux.com/</span><span class="invisible"></span></a></p>
Marcus "MajorLinux" Summers<p>Just had my first disagreement with a coworker.</p><p>It was all about <a href="https://toot.majorshouse.com/tags/SELinux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SELinux</span></a>.</p><p>Come to find out, the issue wasn't even about that.</p><p>A file was just missing.</p><p>I'm now sitting in my comfy chair trying to calm down.</p>
Hacker Public Radio<p>New Episode: hpr4328 :: Use SELinux the easy way</p><p>You don't have to be an expert on SELinux to use it effectively</p><p>Hosted by Klaatu on Wednesday, 2025-03-05 is flagged as Clean and is released under a CC-BY-SA license.</p><p>Tags: <a href="https://infosec.exchange/tags/linux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>linux</span></a>, <a href="https://infosec.exchange/tags/selinux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>selinux</span></a>, <a href="https://infosec.exchange/tags/permissions" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>permissions</span></a>. </p><p>Today on the <a href="https://infosec.exchange/tags/HackerPublicRadio" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>HackerPublicRadio</span></a> <a href="https://infosec.exchange/tags/Community" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Community</span></a> <a href="https://infosec.exchange/tags/Podcast" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Podcast</span></a>​</p><p><a href="https://infosec.exchange/tags/HPR" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>HPR</span></a> ❤️ <a href="https://infosec.exchange/tags/CreativeCommons" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CreativeCommons</span></a></p><p><a href="https://hackerpublicradio.org/eps/hpr4328/index.html" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">hackerpublicradio.org/eps/hpr4</span><span class="invisible">328/index.html</span></a></p>
Danathar<p><span class="h-card" translate="no"><a href="https://fosstodon.org/@Htbaa" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>Htbaa</span></a></span> Don’t make Dan Walsh cry! </p><p><a href="https://stopdisablingselinux.com/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">stopdisablingselinux.com/</span><span class="invisible"></span></a></p><p>I’m told he answers questions about selinux.</p><p><a href="https://twit.social/tags/selinux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>selinux</span></a> <a href="https://twit.social/tags/redhat" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>redhat</span></a> <a href="https://twit.social/tags/linux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>linux</span></a></p>
Christiaan Kras<p>Ugh <a href="https://fosstodon.org/tags/SELinux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SELinux</span></a> is the worst. I'm sure it's 100% my lack of understanding it though. I have my installation scripts all worked out with <a href="https://fosstodon.org/tags/Rex" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Rex</span></a>. At first for <a href="https://fosstodon.org/tags/AlmaLinux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AlmaLinux</span></a> 8 but also adapted it to 9.</p><p>I had it all working properly under 9, but this new VPS somehow mounts the root disk in read-only mode after a reboot when SELinux has been enabled.</p><p>I'm *really* tempted to just keep it in permissive mode and ignore it for the rest of my life.</p><p><a href="https://fosstodon.org/tags/VPS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>VPS</span></a> <a href="https://fosstodon.org/tags/Linux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Linux</span></a></p>
Verfassungklage@troet.cafe<p>Newsupdate 02/25 - <a href="https://troet.cafe/tags/Python3" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Python3</span></a>.14, <a href="https://troet.cafe/tags/FOSDEM" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>FOSDEM</span></a> 2025, <a href="https://troet.cafe/tags/GNOME48" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>GNOME48</span></a> Beta, <a href="https://troet.cafe/tags/KDE" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>KDE</span></a> <a href="https://troet.cafe/tags/Plasma6" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Plasma6</span></a>.3, <a href="https://troet.cafe/tags/openSUSE" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>openSUSE</span></a> und <a href="https://troet.cafe/tags/SELinux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SELinux</span></a> - <a href="https://troet.cafe/tags/FOCUS_ON" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>FOCUS_ON</span></a>: <a href="https://troet.cafe/tags/Linux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Linux</span></a> - <a href="https://troet.cafe/tags/Podcast" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Podcast</span></a>: </p><p>Python 3.14 und KDE Plasma 6.3 erscheinen, während sich der Umfang des kommenden GNOME 48 abzeichnet. Das SELFHTML-Projekt wird 30 Jahre alt und mit RePebble wird einem längst totgesagtem Projekt neues Leben eingehaucht. In der Kernel-Mailingliste entfacht ein Streit über Rust - mit Auswirkungen für das Kernel- und Asahi Linux-Projekt. </p><p><a href="https://focusonlinux.podigee.io/147-newsupdate-0225-python-314-fosdem-2025-gnome-48-beta-kde-plasma-63-opensuse-und-selinux" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">focusonlinux.podigee.io/147-ne</span><span class="invisible">wsupdate-0225-python-314-fosdem-2025-gnome-48-beta-kde-plasma-63-opensuse-und-selinux</span></a></p>
openSUSE Linux<p>February brought big changes to <a href="https://fosstodon.org/tags/openSUSE" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>openSUSE</span></a> Tumbleweed! <a href="https://fosstodon.org/tags/SELinux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SELinux</span></a> is now the default MAC for new installs, while <a href="https://fosstodon.org/tags/Mesa" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Mesa</span></a> 25.0 adds <a href="https://fosstodon.org/tags/Vulkan" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Vulkan</span></a> 1.4 support. Plus, <a href="https://fosstodon.org/tags/KDE" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>KDE</span></a> Plasma 6.3 enhances fractional scaling and drawing tablet settings. 🎨🔍 <a href="https://news.opensuse.org/2025/02/27/tw-monthly-update-february/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">news.opensuse.org/2025/02/27/t</span><span class="invisible">w-monthly-update-february/</span></a></p>
Linux Magazine<p><span class="h-card" translate="no"><a href="https://fosstodon.org/@opensuse" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>opensuse</span></a></span> Tumbleweed rolling release moves from AppArmor to SELinux for its underlying security layer<br><a href="https://www.linux-magazine.com/Online/News/openSUSE-Tumbleweed-Ditches-AppArmor-for-SELinux" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">linux-magazine.com/Online/News</span><span class="invisible">/openSUSE-Tumbleweed-Ditches-AppArmor-for-SELinux</span></a><br><a href="https://fosstodon.org/tags/openSUSE" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>openSUSE</span></a> <a href="https://fosstodon.org/tags/Tumbleweed" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Tumbleweed</span></a> <a href="https://fosstodon.org/tags/AppArmor" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AppArmor</span></a> <a href="https://fosstodon.org/tags/SELinux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SELinux</span></a> <a href="https://fosstodon.org/tags/Linux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Linux</span></a> <a href="https://fosstodon.org/tags/OpenSource" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OpenSource</span></a> <a href="https://fosstodon.org/tags/distro" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>distro</span></a> <a href="https://fosstodon.org/tags/FOSS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>FOSS</span></a> <a href="https://fosstodon.org/tags/security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>security</span></a></p>
in ♥️ with PDA (and 🐧)<p>So <a href="https://chaos.social/tags/opensuse" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>opensuse</span></a> switched to <a href="https://chaos.social/tags/selinux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>selinux</span></a>. Changing my systems works. Only Steam is not running, because selinux blocks boolean.<br>I have to admit, that I don't understand selinux. Is there a easy to understand tutorial? I don't want to mess around.<br>In the suse forum I found this solution:<br>sudo setsebool selinuxuser_execmod 1<br>..but with hint: If you understand the risks.</p><p>I don't understand the risc :)</p>
Jarkko Sakkinen<a class="hashtag" href="https://social.kernel.org/tag/selinux" rel="nofollow noopener noreferrer" target="_blank">#SELinux</a> must be awesome today because I've forgotten that it even exists in my system ;-)<br><br><span class="h-card"><a class="u-url mention" href="https://fosstodon.org/@securepaul" rel="nofollow noopener noreferrer" target="_blank">@<span>securepaul</span></a></span>
LinuxNews.de<p>Neues von openSUSE<br><a href="https://linuxnews.de/neues-von-opensuse/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">linuxnews.de/neues-von-opensus</span><span class="invisible">e/</span></a> <a href="https://social.anoxinon.de/tags/opensuse" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>opensuse</span></a> <a href="https://social.anoxinon.de/tags/sles" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>sles</span></a> <a href="https://social.anoxinon.de/tags/tumbleweed" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>tumbleweed</span></a> <a href="https://social.anoxinon.de/tags/apparmor" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>apparmor</span></a> <a href="https://social.anoxinon.de/tags/selinux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>selinux</span></a> <a href="https://social.anoxinon.de/tags/uefi" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>uefi</span></a></p>