Translated message

A translation of this page exists in English.

由于自定义服务在 "unconfined_service_t" 上下文中运行,系统没有遵守 CIS Server Level 2

Solution In Progress - Updated -

Issue

  • 因为某些自定义服务在 unconfined_service_t SELinux 上下文中运行,CIS Server Level 2 基准 "Ensure No Daemons are Unconfined by SELinux" 规则失败

    要检查未限制的守护进程,请运行以下命令:

    $ sudo ps -eZ | grep "unconfined_service_t"
    

    在一个配置良好的系统中,这个命令不应有任何输出(除非系统中存在已知的程序错误)。

Environment

  • Red Hat Enterprise Linux 8 (RHEL8) 及更新的版本
    • CIS Server Level 2 基准

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.

Current Customers and Partners

Log in for full access

Log In

New to Red Hat?

Learn more about Red Hat subscriptions

Using a Red Hat product through a public cloud?

How to access this content