[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Condor-users] SELinux Condor policy



On Sat, Sep 16, 2006 at 03:49:20PM -0400, Douglas Baggett wrote:
> Has anybody undertaken the rather daunting task of creating a SELinux 
> (Kernel level Mandatory Access Controls) policy for Condor?
> 
> It would be rather challenging I would imagine but well worth it.
> 

As far as I know, no one has created one. It's been on the list of things
I'd like to try for a while now, and if someone created one we'd certainly
love to get it into widespread distribution. 

Some of the utility of an SElinux profile might be reduced with virtual
machines providing the sandboxing for jobs, but it'd be nice to have
multiple options.

So, if anyone has created an SElinux profile , please speak up :)

-Erik