2019-04-11 17:51:59 -03:00
|
|
|
# chcon
|
|
|
|
|
|
|
|
> Change SELinux security context of a file or files/directories.
|
2024-05-27 23:54:20 +08:00
|
|
|
> See also: `secon`, `restorecon`, `semanage-fcontext`.
|
2025-01-18 18:45:33 +05:30
|
|
|
> More information: <https://www.gnu.org/software/coreutils/manual/html_node/chcon-invocation.html>.
|
2019-04-11 17:51:59 -03:00
|
|
|
|
|
|
|
- View security context of a file:
|
|
|
|
|
|
|
|
`ls -lZ {{path/to/file}}`
|
|
|
|
|
|
|
|
- Change the security context of a target file, using a reference file:
|
|
|
|
|
|
|
|
`chcon --reference={{reference_file}} {{target_file}}`
|
|
|
|
|
|
|
|
- Change the full SELinux security context of a file:
|
|
|
|
|
|
|
|
`chcon {{user}}:{{role}}:{{type}}:{{range/level}} {{filename}}`
|
|
|
|
|
|
|
|
- Change only the user part of SELinux security context:
|
|
|
|
|
|
|
|
`chcon -u {{user}} {{filename}}`
|
|
|
|
|
|
|
|
- Change only the role part of SELinux security context:
|
|
|
|
|
|
|
|
`chcon -r {{role}} {{filename}}`
|
|
|
|
|
|
|
|
- Change only the type part of SELinux security context:
|
|
|
|
|
|
|
|
`chcon -t {{type}} {{filename}}`
|
|
|
|
|
|
|
|
- Change only the range/level part of SELinux security context:
|
|
|
|
|
|
|
|
`chcon -l {{range/level}} {{filename}}`
|