rancher / rke2-selinux

RKE2 selinux + RPM packaging for selinux
Apache License 2.0
21 stars 21 forks source link

Use Container Policy from SELinuxProject #25

Closed patsys closed 1 year ago

patsys commented 2 years ago

Hello,

please implement with the Container Policy from https://github.com/SELinuxProject/refpolicy/blob/master/policy/modules/services/container.te

dweomer commented 2 years ago

The policy defined in this repo depends on container-selinux policy available for each supported OS, e.g.:

None of the supported OSes yet leverage container-specific policy from the selinux refpolicy:

JAORMX commented 2 years ago

FWIW, Flatcar Linux is adopting the container SELinux policy from refpolicy.

dweomer commented 2 years ago

FWIW, Flatcar Linux is adopting the container SELinux policy from refpolicy.

I am looking forward to seeing more modern SELinux installations that diverge from RedHat's.

galal-hussein commented 1 year ago

closing this issue since there is no-op is required from our side