Master boolean index:
Global
secure_mode
(Default: false)
Enabling secure mode disallows programs, such as
newrole, from transitioning to administrative
user domains.
Module:
kernel
Layer:
kernel
secure_mode_insmod
(Default: false)
Disable kernel module loading.
Module:
selinux
Layer:
kernel
secure_mode_policyload
(Default: false)
Boolean to determine whether the system permits loading policy, and setting
enforcing mode. Set this to true and you have to reboot to set it back.
Module:
selinux
Layer:
kernel
secure_mode_setbool
(Default: false)
Boolean to determine whether the system permits setting Booelan values.