Type declaration

  • each type of TE model has to be declared

    type sshd_t, domain, privuser, privrole, privlog, 
    privowner;
    type sshd_exec_t, file_type, exec_type, sysadmfile;
    type sshd_tmp_t, file_type, sysadmfile, tmpfile;
    type sshd_var_run_t, file_type, sysadmfile, pidfile;
  • the object type association can be a part of SID located as extended security attribute on file-system or a part of a global policy

  • the type can be associated with attributes which identify a set of types with a similar property