12 Facts About Security-Enhanced Linux

1.

Security-Enhanced Linux is a Linux kernel security module that provides a mechanism for supporting access control security policies, including mandatory access controls .

FactSnippet No. 1,251,788
2.

SESecurity-Enhanced Linux is a set of kernel modifications and user-space tools that have been added to various Security-Enhanced Linux distributions.

FactSnippet No. 1,251,789
3.

The key concepts underlying SESecurity-Enhanced Linux can be traced to several earlier projects by the United States National Security Agency .

FactSnippet No. 1,251,790
4.

Security-Enhanced Linux kernel integrating SESecurity-Enhanced Linux enforces mandatory access control policies that confine user programs and system services, as well as access to files and network resources.

FactSnippet No. 1,251,791
5.

Security of an "unmodified" Security-Enhanced Linux system depends on the correctness of the kernel, of all the privileged applications, and of each of their configurations.

FactSnippet No. 1,251,792
6.

From a purist perspective, SESecurity-Enhanced Linux provides a hybrid of concepts and capabilities drawn from mandatory access controls, mandatory integrity controls, role-based access control, and type enforcement architecture.

FactSnippet No. 1,251,793
7.

Comprehensive list of the original and external contributors to SESecurity-Enhanced Linux was hosted at the NSA website until maintenance ceased, sometime 2009.

FactSnippet No. 1,251,794
8.

For every current user or process, SESecurity-Enhanced Linux assigns a three string context consisting of a username, role, and domain .

FactSnippet No. 1,251,795
9.

SESecurity-Enhanced Linux adds the -Z switch to the shell commands ls, ps, and some others, allowing the security context of the files or process to be seen.

FactSnippet No. 1,251,796
10.

SESecurity-Enhanced Linux is popular in systems based on linux containers, such as CoreOS Container Security-Enhanced Linux and rkt.

FactSnippet No. 1,251,797
11.

SESecurity-Enhanced Linux is available since 2005 as part of Red Hat Enterprise Security-Enhanced Linux version 4 and all future releases.

FactSnippet No. 1,251,798
12.

SESecurity-Enhanced Linux represents one of several possible approaches to the problem of restricting the actions that installed software can take.

FactSnippet No. 1,251,799