Files
cheatsheet-tldr/tldr/linux/sealert
2025-10-09 00:19:00 +00:00

28 lines
728 B
Plaintext

---
syntax: markdown
tags: [tldr, linux]
source: https://github.com/tldr-pages/tldr.git
---
# sealert
> Analyze and explain SELinux AVC denial messages.
> Part of the `setroubleshoot-server` package.
> See also: `audit2why`, `ausearch`, `audit2allow`.
> More information: <https://manned.org/sealert>.
- Analyze all recent SELinux denials:
`sudo sealert {{[-a|--analyze]}} {{/var/log/audit/audit.log}}`
- Analyze a specific alert ID from system logs:
`sudo sealert {{[-l|--lookupid]}} {{alert_id}}`
- Display a summary of recent SELinux alerts:
`sudo sealert {{[-b|--browser]}}`
- Monitor audit log in real-time for new alerts:
`sudo tail {{[-f|--follow]}} {{/var/log/audit/audit.log}} | sealert {{[-l|--lookupid]}} -`