Download the SELinux RPM package to your Linux machine. You can install SE-Linux RPM package on standalone or managed Linux machine, before or after installing Trellix Endpoint Security (ENS) for Linux 10.7.2. Use sestatus command to check whether SELinux is in enforcing, permissive, or disabled state.
You must have installed RedHat 7.1 and later or Redhat 8.x before installing the respective version of SELinux policy RPM package.
Log on to the Trellix product download site (https://www.mcafee.com/enterprise/en-in/downloads/my-products.html) using your Grant number and the registered email address.
Download the SELinux Package
McAfeeENS-selinux-10.7.0-ReleasePackages.tar.gzto a temporary directory on your Linux machine.Extract the package.
tar -zxvf McAfeeENS-selinux-10.7.0-ReleasePackages.tar.gzTo navigate to the directory McAfeeENS-selinux-10.7.0-ReleasePackages.
cd McAfeeENS-selinux-10.7.0-ReleasePackagesInstall SELinux RPM package on your system.
rpm -ivh McAfeeENS-selinux-10.7.0‐<build-number>.el7.noarch.rpmFor RedHat 7.1 and later: Run
rpm -ivh McAfeeENS-selinux-10.7.0‐<build-number>.el7.noarch.rpmFor RedHat 8.x machines: Run
rpm -ivh McAfeeENS-selinux-10.7.0‐<build-number>.el8.noarch.rpm
The sample output on applying this command is:
$ rpm -ivh McAfeeENS-selinux-10.7.0-10.el7.noarch.rpm Preparing... ################################# [100%] McAfeeENS-selinux is installing on - Red Hat Enterprise Linux Server release 7.5 (Maipo) Updating / installing... 1:McAfeeENS-selinux-10.7.0-10.el7 ################################# [100%] Installing McAfeeENS-selinux Successfully loaded SELinux policy (3.13.1-229) mfe_ens_rt.pp Successfully loaded SELinux policy (3.13.1-229) mfe_ens_esp.pp Successfully loaded SELinux policy (3.13.1-229) mfe_ens_fw.pp Successfully loaded SELinux policy (3.13.1-229) mfe_ens_tp.pp