Linked by Thom Holwerda on Wed 19th Mar 2008 22:58 UTC, submitted by diegocg
Ubuntu, Kubuntu, Xubuntu It's official: SELinux is now available in the Ubuntu development ('Hardy Heron') distribution. "This is the result of the amazing work of the ubuntu-security and ubuntu-hardened teams, as well as the huge contributions from the folks at Tresys (SELinux will not be the default, but is available as a security option)." In other news, Sun has started offering Ubuntu as an option.
Permalink for comment 305746
To read all comments associated with this story, please click here.
RE: not default
by Rahul on Wed 19th Mar 2008 23:53 UTC in reply to "not default"
Rahul
Member since:
2005-07-06

Likely not in the short term. When Fedora adopted SELinux in Fedora Core 2 it caused a lot of issues and ended up being disabled by default. Then a targeted policy was designed with just about a dozen programs for Fedora Core 3 and then enabled by default.

Over a period of 6 releases, a lot of policy development, additional tools development, performance etc has been done where it has slowly gotten into the stage where most of the thorny issues are resolved and it works seamlessly for quite a large number of users

Ubuntu (and any other distros) introducing SELinux even disabled by default currently is a good first step before getting rest of the programs working together with SELinux which is actually the bigger part of the integration work that needs to be done. They could probably benefit a lot from adopting policies and tools development done within Fedora and making adjustments where necessary. More distributions adopting this technology is good for improving the overall state of security in Linux since writing policies tends to expose potentially security issues and if you end up disabling SELinux for some programs or even entirely you still get a lot of the residue benefits from it.

James Morris, one of the Red Hat SELinux developer posted his thoughts on

http://james-morris.livejournal.com/27494.html

Edited 2008-03-19 23:54 UTC

Reply Parent Bookmark Score: 5