SElinux AC

SELinux Access Control

  • Uses Flask architecture, DTE, RBAC and MLS security models

  • The subjects and the objects remain the same, SELinux assigns to every subject and object a security context (SID) combined from a type, role and user identifier:

    root:sysadm_r:sysadm_t