Chris PeBenito bf080a4
.TH  "named_selinux"  "8"  "17 Jan 2005" "dwalsh@redhat.com" "named Selinux Policy documentation"
Chris PeBenito 6b19be3
.de EX
Chris PeBenito 6b19be3
.nf
Chris PeBenito 6b19be3
.ft CW
Chris PeBenito 6b19be3
..
Chris PeBenito 6b19be3
.de EE
Chris PeBenito 6b19be3
.ft R
Chris PeBenito 6b19be3
.fi
Chris PeBenito 6b19be3
..
Chris PeBenito bf080a4
.SH "NAME"
Chris PeBenito bf080a4
named_selinux \- Security Enhanced Linux Policy for the Internet Name server (named) daemon
Chris PeBenito bf080a4
.SH "DESCRIPTION"
Chris PeBenito bf080a4
Chris PeBenito bf080a4
Security-Enhanced Linux secures the named server via flexible mandatory access
Chris PeBenito bf080a4
control.  
Chris PeBenito bf080a4
.SH BOOLEANS
Chris PeBenito bf080a4
SELinux policy is customizable based on least access required.  So by 
Chris PeBenito bf080a4
default SElinux policy does not allow named to write master zone files.  If you want to have named update the master zone files you need to set the named_write_master_zones boolean.
Chris PeBenito 6b19be3
.EX
Chris PeBenito bf080a4
setsebool -P named_write_master_zones 1
Chris PeBenito 6b19be3
.EE
Chris PeBenito 6b19be3
.PP
Chris PeBenito f4e2b19
system-config-selinux is a GUI tool available to customize SELinux policy settings.
Chris PeBenito bf080a4
.SH AUTHOR	
Chris PeBenito bf080a4
This manual page was written by Dan Walsh <dwalsh@redhat.com>.
Chris PeBenito bf080a4
Chris PeBenito bf080a4
.SH "SEE ALSO"
Chris PeBenito bf080a4
selinux(8), named(8), chcon(1), setsebool(8)
Chris PeBenito bf080a4
Chris PeBenito bf080a4