{"id":802,"date":"2012-10-29T14:15:29","date_gmt":"2012-10-29T13:15:29","guid":{"rendered":"https:\/\/akim.sissaoui.com\/?p=802"},"modified":"2015-09-02T16:14:00","modified_gmt":"2015-09-02T14:14:00","slug":"convertir-des-violations-selinux-en-regles","status":"publish","type":"post","link":"https:\/\/akim.sissaoui.com\/en\/informatique\/convertir-des-violations-selinux-en-regles\/","title":{"rendered":"Convertir des violations selinux en r\u00e8gles"},"content":{"rendered":"<p>Petite astuce pour convertir des violations selinux en r\u00e8gles sans se prendre la t\u00eate.<\/p>\n<p>Ceci s&#8217;applique bien s\u00fbr si au pr\u00e9alable vous avez v\u00e9rifi\u00e9 votre log, et surtout compris de quoi il retourne. Il ne s&#8217;agit surtout pas de prendre le risque de changer en policy des blocages l\u00e9gitimes de violation.<br \/>\n<!--more--><br \/>\nJe suis actuellement sur une CentOS 6.3. Il faut commencer par installer le paquet policycoreutils-python. Ceci installera entre autre audit2allow.<\/p>\n<p>Ensuite, ex\u00e9cuter un grep du log d&#8217;audit, par exemple dans mon exemple, pour fail2ban.<\/p>\n<pre lang=\"bash\">\r\ngrep \"fail2ban\" \/var\/log\/messages | audit2allow\r\n<\/pre>\n<p><a href=\"http:\/\/blog.serverbuddies.com\/selinux-policy-for-your-parallels-plesk-panel-server\/\" target=\"_blank\"><\/a>Source: SELinux Policy for Your Parallels Plesk Panel Server<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Petite astuce pour convertir des violations selinux en r\u00e8gles sans se prendre la t\u00eate. Ceci s&#8217;applique bien s\u00fbr si au pr\u00e9alable vous avez v\u00e9rifi\u00e9 votre log, et surtout compris de quoi il retourne. Il ne s&#8217;agit surtout pas de prendre le risque de changer en policy des blocages l\u00e9gitimes de violation.<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[220],"tags":[56,189],"jetpack_sharing_enabled":true,"jetpack_featured_media_url":"","_links":{"self":[{"href":"https:\/\/akim.sissaoui.com\/en\/wp-json\/wp\/v2\/posts\/802"}],"collection":[{"href":"https:\/\/akim.sissaoui.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/akim.sissaoui.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/akim.sissaoui.com\/en\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/akim.sissaoui.com\/en\/wp-json\/wp\/v2\/comments?post=802"}],"version-history":[{"count":3,"href":"https:\/\/akim.sissaoui.com\/en\/wp-json\/wp\/v2\/posts\/802\/revisions"}],"predecessor-version":[{"id":994,"href":"https:\/\/akim.sissaoui.com\/en\/wp-json\/wp\/v2\/posts\/802\/revisions\/994"}],"wp:attachment":[{"href":"https:\/\/akim.sissaoui.com\/en\/wp-json\/wp\/v2\/media?parent=802"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/akim.sissaoui.com\/en\/wp-json\/wp\/v2\/categories?post=802"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/akim.sissaoui.com\/en\/wp-json\/wp\/v2\/tags?post=802"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}