SV-208802r603263_rule
V-208802
SRG-OS-000480
OL6-00-000023
CAT III
10
The SELinux "targeted" policy is appropriate for general-purpose desktops and servers, as well as systems in many other roles. To configure the system to use this policy, add or correct the following line in "/etc/selinux/config":
SELINUXTYPE=targeted
Other policies, such as "mls", provide additional security labeling and greater confinement but are not compatible with many general-purpose use cases.
Check the file "/etc/selinux/config" and ensure the following line appears:
SELINUXTYPE=targeted
If it does not, this is a finding.
V-208802
False
OL6-00-000023
Check the file "/etc/selinux/config" and ensure the following line appears:
SELINUXTYPE=targeted
If it does not, this is a finding.
M
2928