* Comparison with POSIX.1e MAC
@ 2001-01-08 17:57 Andrew Morgan
2001-01-08 19:21 ` Stephen Smalley
0 siblings, 1 reply; 2+ messages in thread
From: Andrew Morgan @ 2001-01-08 17:57 UTC (permalink / raw)
To: selinux
Hi,
I've not found the archives for this list anywhere, so someone may have
already answered this, but how does the selinux framework compare with
the Manditory Access Control stuff contained in the withdrawn POSIX.1e
draft? The draft can be found here:
http://www.guug.de/~winni/posix.1e/download.html
Thanks
Andrew
--
You have received this message because you are subscribed to the selinux list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.
^ permalink raw reply [flat|nested] 2+ messages in thread
* Re: Comparison with POSIX.1e MAC
2001-01-08 17:57 Comparison with POSIX.1e MAC Andrew Morgan
@ 2001-01-08 19:21 ` Stephen Smalley
0 siblings, 0 replies; 2+ messages in thread
From: Stephen Smalley @ 2001-01-08 19:21 UTC (permalink / raw)
To: Andrew Morgan; +Cc: selinux
On Mon, 8 Jan 2001, Andrew Morgan wrote:
> I've not found the archives for this list anywhere, so someone may have
> already answered this, but how does the selinux framework compare with
> the Mandatory Access Control stuff contained in the withdrawn POSIX.1e
> draft? The draft can be found here:
>
> http://www.guug.de/~winni/posix.1e/download.html
There is currently an unofficial archive of the mailing list at
http://marc.theaimsgroup.com/?l=selinux. An official archive
should be forthcoming soon.
As discussed in the paper "The Inevitability of Failure: The
Flawed Assumption of Security in Modern Computing Environments"
(accessible via the Background web page), the TCSEC provides
a narrow definition of mandatory security that is tightly coupled to
the multi-level security policy. Recent work has explored alternative
forms of mandatory (aka nondiscretionary) security such as Role-Based
Access Control and Type Enforcement. These alternative forms of mandatory
security offer better support for protecting applications against
tampering or bypass, for preventing the execution of untrustworthy
programs, and for enforcing least privilege.
The Security-Enhanced Linux has a well-defined architecture (named Flask)
for flexible mandatory access controls that has been experimentally
validated through several prototype systems (DTMach, DTOS, and Flask).
The architecture is a generalization of Type Enforcement. It provides
clean separation of policy from enforcement, well-defined policy decision
interfaces, flexibility in labeling and access decisions, support for
policy changes, and fine-grained controls over the kernel abstractions.
Detailed studies have been performed of the ability of the architecture to
support a wide variety of security policies and are available on the DTOS
and Flask web pages accessible via the Background page
(http://www.nsa.gov/selinux/background.html). A published paper about
the Flask architecture is also available on the Background page. The
architecture and its implementation in Linux are described in detail in
the documentation (http://www.nsa.gov/selinux/docs.html).
--
Stephen D. Smalley, NAI Labs
sds@tislabs.com
--
You have received this message because you are subscribed to the selinux list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.
^ permalink raw reply [flat|nested] 2+ messages in thread
end of thread, other threads:[~2001-01-08 19:22 UTC | newest]
Thread overview: 2+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2001-01-08 17:57 Comparison with POSIX.1e MAC Andrew Morgan
2001-01-08 19:21 ` Stephen Smalley
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.