[CentOS] SELinux - way of the future or good idea but !!!

Tue Nov 30 11:54:57 UTC 2010
Leonard den Ottolander

Hello John,

On Tue, 2010-11-30 at 02:12 -0800, John Doe wrote:
From: Les Mikesell
> > why are you  putting blind faith in the SELinux code?

The SELinux restrictions are a much bigger hurdle to take for a buffer
overflow exploit than setting a "safe" uid.

> Because it comes from the NSA!
> The backdoor experts... ;P

> PS: joking of course, the NSA would never do anything bad...

This of course was a serious concern by any of the early adopters. It
has been discussed in length on various mailing lists. But since the
code is available it can and has been audited. Unless of course the
Linux developers are collaborating with the NSA to take over your
computer and they slipped us a mickey.


