/etc/selinux/config文件
# This file controls the state of SELinux on the system.
# SELINUX= can take one of these three values:
# enforcing - SELinux security policy is enforced.
# permissive - SELinux prints warnings instead of enforcing.
# disabled - No SELinux policy is loaded.
SELINUX=enforcing
# SELINUXTYPE= can take one of three two values:
# targeted - Targeted processes are protected,
# minimum - Modification of targeted policy. Only selected processes are protected.
# mls - Multi Level Security protection.
SELINUXTYPE=targeted
临时生效:
setenforce 0
0 启动
1 不启动
永久生效:
# 操作前先备份
cp /etc/selinux/config /etc/selinux/config.bak
sed -i 's/SELINUX=enforcing/\SELINUX=disabled/' /etc/selinux/config
# SELINUX参数enforcing代表打开,disabled代表关闭
查看selinux状态:
getenforce