SlideShare a Scribd company logo
Security-Enhanced Linux by Atul Jha aka koolhead17 By Atul Jha
SELinux: What?
Mandatory Access Control Complements traditional Discretionary Access Control
SELinux: Why?
Integrity (Type Enforcement) Confidentiality (Multi Level Security) Role Based Access Control
SELinux: Where?
Kernel: Security server Object manager Access Vector Cache
User space: Coreutils Policycoreutils Checkpolicy
SELinux-policy: Configuration data Rules that govern access
Policy models and concepts
SELinux identities or User based access control: - First field in security context tuple - SELinux identities a way to map Linux logins to SELinux Users - User based access control mechanisme to isolate SELinux users
Role Based Access Control: - Second field in security context tuple - Mechanism that enables SELinux users to switch types
Type Enforcement: - Third field in security context tuple - Processes and objects are assigned types - Policy governs how types can interact
Multi Level Security or Multi Category Security: - Fourth field in security context tuple
MLS: - Processes and objects are assigned security levels - Security level is a sensitivity and compartment(s) - s0 SystemLow - s15:c0.c1023 SystemHigh 16 sensitivities 1024 compartments “No read up and no write down”
MCS: - Alternative way to use MLS attribute - Only one sensitivity - 1024 categories - Semi-discretionary - MCS used in Svirt and Sandbox -X
SELinux resources: http://www.selinuxproject.org/page/User_Resources

More Related Content

PPTX
Security Enhanced Linux Overview
PDF
Selinux
PPTX
PPT
Introduction To SELinux
ODP
SELinux for Everyday Users
ODP
SELinux Basic Usage
PDF
SELinux introduction
PDF
How to use SELINUX (No I don't mean turn it off)
Security Enhanced Linux Overview
Selinux
Introduction To SELinux
SELinux for Everyday Users
SELinux Basic Usage
SELinux introduction
How to use SELINUX (No I don't mean turn it off)

What's hot (20)

PDF
MR201406 A Re-introduction to SELinux
ODP
chroot and SELinux
PDF
SELinux basics
PDF
Understanding SELinux For the Win
PDF
The SElinux Notebook :the foundations - Vol 1
PDF
Introduction to SELinux Part-I
ODP
How to live with SELinux
PPTX
SELinux_@gnu_group_meetup
PDF
How to not disable SELinux
PPT
Unix Security
PPT
Security and Linux Security
PPT
Threats, Vulnerabilities & Security measures in Linux
PPT
Basic Linux Security
PDF
2008 08-12 SELinux: A Key Component in Secure Infrastructures
PPT
Operating system vulnerability and control
ODP
Slug 2009 06 SELinux For Sysadmins
PDF
Directions in SELinux Networking
PPTX
Linux Security in Operating System
PPT
Inside Out Hacking - Bypassing Firewall
PDF
Have You Driven an SELinux Lately? - An Update on the SELinux Project - OLS ...
MR201406 A Re-introduction to SELinux
chroot and SELinux
SELinux basics
Understanding SELinux For the Win
The SElinux Notebook :the foundations - Vol 1
Introduction to SELinux Part-I
How to live with SELinux
SELinux_@gnu_group_meetup
How to not disable SELinux
Unix Security
Security and Linux Security
Threats, Vulnerabilities & Security measures in Linux
Basic Linux Security
2008 08-12 SELinux: A Key Component in Secure Infrastructures
Operating system vulnerability and control
Slug 2009 06 SELinux For Sysadmins
Directions in SELinux Networking
Linux Security in Operating System
Inside Out Hacking - Bypassing Firewall
Have You Driven an SELinux Lately? - An Update on the SELinux Project - OLS ...
Ad

Viewers also liked (20)

PDF
Selinux
PPTX
Introducing Puppet - The faster speed of Automation
PPT
Openstack swift - VietOpenStack 6thmeeetup
PDF
Swift Install Workshop - OpenStack Conference Spring 2012
PDF
OpenStack Swift on virtualbox
PPT
Exploring Openstack Swift(Object Storage) and Swiftstack
DOCX
1 system security
PDF
OpenStack Swift production deployments
PDF
Openstack Swift overview
PDF
CIS 2015- Understanding & Managing Discretionary Access: The TAO of Entitleme...
PDF
Bootkits: past, present & future
PPT
Security models
PDF
Resilient IoT Security: The end of flat security models
PDF
Moving Security Model From Content to Context
PPTX
Security models of modern mobile systems
PPTX
Cia security model
PPTX
Android sandbox
PPTX
OpenStack으로 바로보는 상용 클라우드 플랫폼
PPT
3. security architecture and models
Selinux
Introducing Puppet - The faster speed of Automation
Openstack swift - VietOpenStack 6thmeeetup
Swift Install Workshop - OpenStack Conference Spring 2012
OpenStack Swift on virtualbox
Exploring Openstack Swift(Object Storage) and Swiftstack
1 system security
OpenStack Swift production deployments
Openstack Swift overview
CIS 2015- Understanding & Managing Discretionary Access: The TAO of Entitleme...
Bootkits: past, present & future
Security models
Resilient IoT Security: The end of flat security models
Moving Security Model From Content to Context
Security models of modern mobile systems
Cia security model
Android sandbox
OpenStack으로 바로보는 상용 클라우드 플랫폼
3. security architecture and models
Ad

Similar to Introduction to Selinux (20)

PDF
2008-10-15 Red Hat Deep Dive Sessions: SELinux
PDF
2009-08-11 IBM Teach the Teachers (IBM T3), Linux Security Overview
PDF
SELinux workshop
PDF
Overview of NSA Security Enhanced Linux - FOSS.IN/2005
PPTX
SE Linux
PDF
SELinux Johannesburg Linux User Group (JoziJUg)
PPTX
selinuxbasicusage.pptx
PDF
SELinux Project Overview - Linux Foundation Japan Symposium 2008
PDF
Managing SELinux Security - RHCSA (RH134).pdf
PDF
SELinux Basics: Managing SELinux Modes and Context - RHCSA+.pdf
PDF
PPT_Compiled
PDF
[Wroclaw #3] SELinux 101
PPTX
SELinux concept in rhel_Linux_today.pptx
PDF
LCJ2010-KaiGai-Memcached
PDF
LCJ2010-KaiGai-sepgsql
PDF
Linux Kernel Security: Adapting 1960s Technology to Meet 21st Century Threats
PDF
SELinux Kernel Internals and Architecture - FOSS.IN/2005
PPTX
Linux security introduction
PPTX
Linux security
2008-10-15 Red Hat Deep Dive Sessions: SELinux
2009-08-11 IBM Teach the Teachers (IBM T3), Linux Security Overview
SELinux workshop
Overview of NSA Security Enhanced Linux - FOSS.IN/2005
SE Linux
SELinux Johannesburg Linux User Group (JoziJUg)
selinuxbasicusage.pptx
SELinux Project Overview - Linux Foundation Japan Symposium 2008
Managing SELinux Security - RHCSA (RH134).pdf
SELinux Basics: Managing SELinux Modes and Context - RHCSA+.pdf
PPT_Compiled
[Wroclaw #3] SELinux 101
SELinux concept in rhel_Linux_today.pptx
LCJ2010-KaiGai-Memcached
LCJ2010-KaiGai-sepgsql
Linux Kernel Security: Adapting 1960s Technology to Meet 21st Century Threats
SELinux Kernel Internals and Architecture - FOSS.IN/2005
Linux security introduction
Linux security

More from Atul Jha (18)

PDF
Hooked by Nir Eyal
PDF
Don't make me think: Steve Krug
PDF
Thumbnail generation using Minio's event notification.
PDF
Minio: Associated projects in Go programming.
PDF
Open Source Cloud alternatives
PDF
Summary of DockerCon Europe.
ODP
OpenStack Swift: Panoramic View
PDF
OpenStack : Linux User Group meetup
PDF
OpenStack: An introduction
PDF
Open Cloud -- Future of Cloud Computing
PDF
Openstack: Open Source software for building public and private cloud.
PDF
Introduction and hacking OpenStack, Pycon India
PDF
Introduction to FOSS, SRM University
PDF
Juju
PDF
Phishing
PDF
Foss adoption in Indian Government Enterprise.
PDF
Nepal
PDF
Introduction to Subversion
Hooked by Nir Eyal
Don't make me think: Steve Krug
Thumbnail generation using Minio's event notification.
Minio: Associated projects in Go programming.
Open Source Cloud alternatives
Summary of DockerCon Europe.
OpenStack Swift: Panoramic View
OpenStack : Linux User Group meetup
OpenStack: An introduction
Open Cloud -- Future of Cloud Computing
Openstack: Open Source software for building public and private cloud.
Introduction and hacking OpenStack, Pycon India
Introduction to FOSS, SRM University
Juju
Phishing
Foss adoption in Indian Government Enterprise.
Nepal
Introduction to Subversion

Recently uploaded (20)

PDF
kom-180-proposal-for-a-directive-amending-directive-2014-45-eu-and-directive-...
PPT
340036916-American-Literature-Literary-Period-Overview.ppt
PDF
Business model innovation report 2022.pdf
PDF
Stem Cell Market Report | Trends, Growth & Forecast 2025-2034
PDF
MSPs in 10 Words - Created by US MSP Network
PPTX
Belch_12e_PPT_Ch18_Accessible_university.pptx
PPTX
job Avenue by vinith.pptxvnbvnvnvbnvbnbmnbmbh
PPTX
Amazon (Business Studies) management studies
PDF
Outsourced Audit & Assurance in USA Why Globus Finanza is Your Trusted Choice
PDF
How to Get Business Funding for Small Business Fast
PDF
COST SHEET- Tender and Quotation unit 2.pdf
PDF
Nidhal Samdaie CV - International Business Consultant
PDF
A Brief Introduction About Julia Allison
PPTX
5 Stages of group development guide.pptx
PPT
Data mining for business intelligence ch04 sharda
PPTX
CkgxkgxydkydyldylydlydyldlyddolydyoyyU2.pptx
PDF
BsN 7th Sem Course GridNNNNNNNN CCN.pdf
PPTX
The Marketing Journey - Tracey Phillips - Marketing Matters 7-2025.pptx
PDF
20250805_A. Stotz All Weather Strategy - Performance review July 2025.pdf
PDF
Training And Development of Employee .pdf
kom-180-proposal-for-a-directive-amending-directive-2014-45-eu-and-directive-...
340036916-American-Literature-Literary-Period-Overview.ppt
Business model innovation report 2022.pdf
Stem Cell Market Report | Trends, Growth & Forecast 2025-2034
MSPs in 10 Words - Created by US MSP Network
Belch_12e_PPT_Ch18_Accessible_university.pptx
job Avenue by vinith.pptxvnbvnvnvbnvbnbmnbmbh
Amazon (Business Studies) management studies
Outsourced Audit & Assurance in USA Why Globus Finanza is Your Trusted Choice
How to Get Business Funding for Small Business Fast
COST SHEET- Tender and Quotation unit 2.pdf
Nidhal Samdaie CV - International Business Consultant
A Brief Introduction About Julia Allison
5 Stages of group development guide.pptx
Data mining for business intelligence ch04 sharda
CkgxkgxydkydyldylydlydyldlyddolydyoyyU2.pptx
BsN 7th Sem Course GridNNNNNNNN CCN.pdf
The Marketing Journey - Tracey Phillips - Marketing Matters 7-2025.pptx
20250805_A. Stotz All Weather Strategy - Performance review July 2025.pdf
Training And Development of Employee .pdf

Introduction to Selinux