Workgroup:SELinux
This group is about adding SE Linux support to NixOS both booting and when run on a system like Debian or Fedora with SE Linux support.
People
Config
boot.kernelParams = [ "security=selinux" ];
- not yet tested the kernel config
boot.kernelPatches = [ { name = "selinux-config"; patch = null; extraConfig = SECURITY_SELINUX y SECURITY_SELINUX_DEVELOP y SECURITY_SELINUX_AVC_STATS y SECURITY_SELINUX_CHECKREQPROT_VALUE 0 ; } ];