SELinux keeps a policy database of which label each path should have, written as regular expressions such as /var/www(/.*)? mapped to httpd_sys_content_t. The actual label is stored on each file. When the two disagree, the fix is to reset the file to what the policy says. When the policy itself has no rule for your custom path, you first add one.
Keep reading for free
Create a free StudyToCert account to read the rest of this lesson: 7 more sections, 4 key terms, a real-world example, an exam tip and self-check questions. Every lesson, lab and practice test is free with an account.