SELinux

From CBLFS
Revision as of 00:44, 5 March 2009 by Xep (talk | contribs)
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Jump to navigationJump to search
Caution.png

Note

Currently this page under construction and not proposed for using it.

Introduction to SELinux

SELinux was initially a project to port the work developing a mandatory access control architecture done by the National Security Agency (NSA) and the Secure Computing Corporation (SCC) on the Mach and Fluke OS's to Linux.

SELinux differs from regular Linux security in that in addition to the traditional UNIX user id and group id, it also attaches a SELinux user, role and type to each file and process.

For more information please read the NSA SELinux website and a paper on why mandatory access controls are a good and likely a necessary thing.

Project Homepage: http://www.nsa.gov/selinux/

Sections of SELinux