I am learning SELinux and would like to establish a policy for Bitcoin. Does anyone have any experience with SELinux and has established any related efforts?
At the moment I haven't established any results. I have no idea where to begin. I do not understand c++ code.
Actually you don't need to.
I haven't elaborated in writing a specific SELinux policy for the Bitcoin, but instead put it running as a separate SELinux user and at user_t. That protection/isolation seemed reasonable for me.
What are you targeting with the SELinux policy module?
What are the specific threats are you concerned with?
Do you protecting the system from the violent network, or trying to defend the wallet?
Can you elaborate on that more?
I wouldn't mind in providing help.