title
Please take a moment to fill out this form. We will get back to you as soon as possible.
All fields marked with an asterisk (*) are mandatory.
RHEL SELinux Policy Administration
Course Description
Overview
This advanced security course takes a deep dive into the complexities and nuances of SELinux. The course discusses security threats posed to today’s computing resources and mitigating them through network and host protections. Students will review SELinux technology through understanding SELinux’s goals, how it has evolved including its features and limitations.Students will gain hands-on experience in working with SELinux modes, virtualization, and container security. The core of the course is learning and understanding SELinux policy through, choosing, managing, and studying policy examples. Once students have an understanding of the SELinux policy the course will cover writing policy modules. The course is capped with multiple discussions on case studies that explore building SELinux policies. This SELinux course covers one of the major challenge faced by administering SELinux, SELinux troubleshooting.
Objectives
Prerequisites
-
The 'Linux Fundamentals' and 'Enterprise Linux Systems Administration courses.
Topics
- Security Threats
- Network and host protection
- Shortcomings of Traditional Unix Security
- DAC vs. MAC
- SELinux goals
- SELinux evolution
- SELinux features and limitations
- SELinux contexts
- Labels
- Access decisions
- Transition decisions: processes
- SELinux example
- Lab Tasks
- System preparation
- Contexts
- SELinux modes
- Gathering SELinux information
- SELinux virtual filesystem
- Core Commands and SELinux
- SELinux management utilities
- Context and file operations
- Managing file context database
- Managing contexts
- Booleans
- SELinux mount options
- Virtualization security
- Container security
- Securing networked services
- Managing port contexts
- Lab Tasks
- Exploring SELinux modes
- Gathering information
- Managing SELinux Booleans
- Managing contexts
- Mounting filesystems
- Manual relabel
- GUI utilities
- The SELinux policy
- Choosing an SELinux policy
- Policy layout
- Examining policy
- Managing policies
- Targeted policy
- Targeted policy example: Apache
- Targeted policy example: other contexts
- Minimum policy
- MLS policy overview
- MCS translation
- Polyinstantiated directories
- Overview of roles
- Roles
- User Mappings
- Kiosk User (xguest)
- Controlling Application Execution
- Lab Tasks
- SELinux Identities and Roles
- Kiosk User
- Access denied. Now what?
- AVC denied examples
- Incorrect file context
- Permissive domains
- Using audit2allow
- Lab Tasks
- Troubleshooting using permissive domains
- Using audit2why and audit2allow to create policy
- SELinux policy tools
- SELinux policy source
- Reference policy source exploration
- Process transitions
- Object classes
- Policy macros
- Creating Booleans
- Using Booleans in policies
- Other policy commands
- Writing policy modules
- Lab Tasks
- Domain transition exploration
- Exploring SELinux modes
- Writing a simple module
- Defining and using booleans
- Creating & compiling policy from source
- Using seplogen
- SELinux Policy Building: Case Study 1
- SELinux Policy Building: Case Study 2
- Installing and switching policies
- Minimum policy
- MCS exploration
- MCS restrictions
- Polyinstantiated directories
Related Courses
-
Microsoft Security Operations Analyst
MOC-SC-200T00- Duration: 4 Days
- Delivery Format: Classroom Training, Online Training
- Price: 2,380.00 USD
-
Certified Dark Web Analyst Common Body of Knowledge 5th Edition
035144SE- Duration: 5
- Delivery Format: Classroom Training, Online Training
- Price: 3,500.00 USD
Self-Paced Training Info
Learn at your own pace with anytime, anywhere training
- Same in-demand topics as instructor-led public and private classes.
- Standalone learning or supplemental reinforcement.
- e-Learning content varies by course and technology.
- View the Self-Paced version of this outline and what is included in the SPVC course.
- Learn more about e-Learning
Course Added To Shopping Cart
bla
bla
bla
bla
bla
bla
Self-Paced Training Terms & Conditions
Exam Terms & Conditions
Sorry, there are no classes that meet your criteria.
Please contact us to schedule a class.
STOP! Before You Leave
Save 0% on this course!
Take advantage of our online-only offer & save 0% on any course !
Promo Code skip0 will be applied to your registration
Purchase Information
title
Please take a moment to fill out this form. We will get back to you as soon as possible.
All fields marked with an asterisk (*) are mandatory.