Company
Date Published
Author
Christian Frichot
Word count
489
Language
English
Hacker News points
None

Summary

We have developed a baseline SELinux policy for securing Vault on Red Hat-based Linux distributions to help secure secret data managed by Vault. This policy is available as an open source GitHub repo and will eventually be made available in our Linux Repository. It provides Mandatory Access Controls to processes running on Linux distributions, including SELinux and AppArmor. The policy can be customized to specific security requirements but also comes with complexity. To get started, download and install the RPMs from our releases page or clone the repo for a customized deployment. Long-term, we plan to make these RPMs available in our official Linux repository and investigate providing similar policies for AppArmor on other distributions.