December 2017
Intermediate to advanced
410 pages
11h 5m
English
SELinux was originally a development project of the National Security Agency (NSA).
In SELinux-based terminology, data is classified into two types: subjects and objects. The subjects are referred to as files, directories and network ports, and device files. The object includes processes running on your system such as Apache.
Depending upon the permission associated with the subject and the object, permission can either be granted or denied, even if the process is running as root.
The following diagram shows the basic architecture of SELinux:

Read now
Unlock full access