July 2006
Intermediate to advanced
456 pages
9h 45m
English
In this chapter
• 5.2 Types, Attributes, and Aliases
• 5.5 Exploring Type Enforcement Rules with Apol
The majority of a SELinux policy is made up of several rules that together we call the type enforcement rules. These rules control allowed access, many aspects of default transition labeling, auditing, and invariant assertion checking. In this chapter, we examine the type enforcement rules in detail along with the statements to define and declare the types used by these rules.
The majority of a SELinux policy is a set of statements and rules that collectively define the type enforcement (TE) policy. A well-defined, ...