All of lore.kernel.org
 help / color / mirror / Atom feed
From: Jesse Pollard <pollard@admin.navo.hpc.mil>
To: j.logsdon@lancaster.ac.uk, selinux@tycho.nsa.gov
Subject: Re: Simple question
Date: Wed, 12 Feb 2003 12:53:26 -0600	[thread overview]
Message-ID: <200302121253.26502.pollard@admin.navo.hpc.mil> (raw)
In-Reply-To: <Pine.LNX.4.10.10302121830350.25327-100000@mercury.quantex>

On Wednesday 12 February 2003 12:32 pm, j.logsdon@lancaster.ac.uk wrote:
> Hi
>
> In general terms, what does SEL do that I can't do (even if more
> complicated) by Access Control Lists?  If I can control the users and
> groups that can access files (and these are all properly set) what
> advantage do I have in running SEL?

ACLs are under the control of the user. The user choses the other users that
may access the files that the user owns.

SELinux is under the control of the security administrator. This includes the
files that the user owns. Even if the user wants a specific other user to have
access to a file, if that user is not in a domain containing the other user 
(ie, both are in the same domain) then the other user still cannot access the 
file.

> I'm not being rude - just trying to understand the difference and to see
> whether it is really necessary to run a bespoke kernel.

The difference is in mandatory access vs descretionary access.

As far as the system files go, if all are carefully given approprate ACLs, 
then they can be protected. However, if the root accout is hacked, the files
are still vulnerable.

If a SELinux system is hacked, unless the hack itself contains an all powerful
label/domain, the hack still doesn't have access to all of the files.. Only 
those belonging to the domain of the hacked daemon.

Others may have more detailed/correct answers, but this should be the
lowest common denominator.

-- 
-------------------------------------------------------------------------
Jesse I Pollard, II
Email: pollard@navo.hpc.mil

Any opinions expressed are solely my own.

--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.

  reply	other threads:[~2003-02-12 18:54 UTC|newest]

Thread overview: 37+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2003-02-12 18:32 Simple question j.logsdon
2003-02-12 18:53 ` Jesse Pollard [this message]
2003-02-12 21:40   ` j.logsdon
2003-02-12 23:28     ` Russell Coker
2003-02-12 20:45 ` Russell Coker
2003-02-12 21:47 ` Howard Holm
  -- strict thread matches above, loose matches on Subject: below --
2003-07-31 17:53 simple question Zyman, Andy
2003-07-31 19:14 ` David Hinds
2003-07-31 20:41 ` Zyman, Andy
2003-07-31 20:59 ` David Hinds
2003-07-31 21:26 ` Joshua Schmidlkofer
2004-05-05 15:27 Simple question Oriol Magrané
2004-05-05 16:19 ` Aleksandar Milivojevic
2004-05-05 16:25 ` Antony Stone
2004-05-05 17:43 ` Martijn Lievaart
2004-05-06 21:45   ` Antony Stone
2005-04-27 10:35 simple question Askar
2005-04-27 10:50 ` Mohamed Eldesoky
2005-04-27 10:58   ` Askar
2005-04-27 11:04     ` Cedric Blancher
2005-04-27 11:07       ` Cedric Blancher
2005-04-27 14:21 ` Jason Opperisano
2005-05-19  6:23 Ivan Georgiev
2005-05-19  6:23 ` Mark Studebaker
2005-05-19  6:23 ` Simple Question Jean Delvare
2005-05-19  6:23 ` Craig H. Block
2006-01-03 21:42 Simple question LWATCDR
2006-01-03 22:24 ` James Courtier-Dutton
2006-02-19  0:12 simple question Niv
2006-02-19  0:44 ` Greg KH
2006-02-19  2:19 ` Mark Rosenstand
2006-02-19  2:26 ` Niv
2006-04-14 19:27 Nebojsa Trpkovic
2006-04-15 18:33 ` Jacob Shin
2007-05-22 12:35 Filka Michal
     [not found] ` <da3a2a260705221120x3216601doee80f297904493a0@mail.gmail.com>
2007-05-23  5:33   ` Filka Michal
2011-04-16  2:27 Simple Question Jeff

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=200302121253.26502.pollard@admin.navo.hpc.mil \
    --to=pollard@admin.navo.hpc.mil \
    --cc=j.logsdon@lancaster.ac.uk \
    --cc=selinux@tycho.nsa.gov \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.