skinny.

Latest / Linux Server Admin with Fexingo: Sysadmin, Bash, and Server Engineering

How to Harden Your Linux Server with SELinux Policies

In this episode, Lucas and Luna dive into SELinux on Linux servers — specifically, why and how to implement targeted policies without breaking production workloads. Lucas walks through a real case from a financial services company that reduced their kernel-level vulnerability exposure by over 80 percent after enabling SELinux in enforcing mode on 200 servers. They discuss the common pain points: learning the audit2allow workflow, writing custom policy modules, and handling SELinux denials. They also compare SELinux to AppArmor, explaining when each makes sense. The conversation is grounded in…

The skinny

The skinny isn't ready yet — notes appear once the transcript is processed.