2006-01-06 22:51:40 +00:00
|
|
|
.TH "nfs_selinux" "8" "17 Jan 2005" "dwalsh@redhat.com" "nfs Selinux Policy documentation"
|
|
|
|
.SH "NAME"
|
|
|
|
nfs_selinux \- Security Enhanced Linux Policy for NFS
|
|
|
|
.SH "DESCRIPTION"
|
|
|
|
|
|
|
|
Security-Enhanced Linux secures the nfs server via flexible mandatory access
|
|
|
|
control.
|
|
|
|
.SH BOOLEANS
|
|
|
|
SELinux policy is customizable based on least access required. So by
|
|
|
|
default SElinux policy does not allow nfs to share files. If you want to
|
|
|
|
setup this machine to share nfs partitions read only, you must set the boolean nfs_export_all_ro boolean.
|
|
|
|
|
|
|
|
.TP
|
|
|
|
setsebool -P nfs_export_all_ro 1
|
|
|
|
.TP
|
|
|
|
If you want to share files read/write you must set the nfs_export_all_rw boolean.
|
|
|
|
.TP
|
|
|
|
setsebool -P nfs_export_all_rw 1
|
|
|
|
|
|
|
|
.TP
|
|
|
|
If you want to use a remote NFS server for the home directories on this machine, you must set the use_nfs_home_dir boolean.
|
|
|
|
.TP
|
|
|
|
setsebool -P use_nfs_home_dirs 1
|
|
|
|
.TP
|
2007-04-02 13:58:33 +00:00
|
|
|
system-config-selinux is a GUI tool available to customize SELinux policy settings.
|
2006-01-06 22:51:40 +00:00
|
|
|
.SH AUTHOR
|
|
|
|
This manual page was written by Dan Walsh <dwalsh@redhat.com>.
|
|
|
|
|
|
|
|
.SH "SEE ALSpppO"
|
|
|
|
selinux(8), chcon(1), setsebool(8)
|