Chapter 6. Working with SELinux Policies
Until now, we have been working with an existing SELinux policy by tuning our system to deal with the proper SELinux contexts, assigning the right labels on files, directories, and even network ports. In this chapter we will:
Manipulate conditional SELinux policy rules through booleans
Create our own SELinux policy modules and use this to enhance the SELinux policies on our systems