Chapter 6. Roles and Users


In this chapter

  • 6.1 Role-Based Access Control in SELinux

  • 6.2 Roles and Role Statements

  • 6.3 Users and User Statements

  • 6.4 Exploring Roles and Users with Apol

  • 6.5 Summary

  • Exercises

page 130

page 135

page 140

page 144

page 146

page 147


SELinux provides a form of role-based access control (RBAC) that builds upon type enforcement (TE). Roles are used to group domain types and to restrict relationships between domain types and users. Users in SELinux associate one or more roles with a Linux user. Using roles and users, the RBAC features allow for the efficient definition and management of the privileges ultimately granted to Linux users.




SELinux by Example(c) Using Security Enhanced Linux
SELinux by Example: Using Security Enhanced Linux
ISBN: 0131963694
EAN: 2147483647
Year: 2007
Pages: 154

flylib.com © 2008-2017.
If you may any questions please contact us: flylib@qtcs.net