首页> 美国政府科技报告 >Integrating Flexible Support for Security Policies into the Linux Operating System
【24h】

Integrating Flexible Support for Security Policies into the Linux Operating System

机译:将安全策略的灵活支持集成到Linux操作系统中

获取原文

摘要

The protection mechanisms of current mainstream operating systems are inadequate to support confidentiality and integrity requirements for end systems. Mandatory access control (MAC) is needed to address such requirements, but the limitations of traditional MAC have inhibited its adoption into mainstream operating systems. The National Security Agency (NSA) worked with Secure Computing Corporation (SCC) to develop a flexible MAC architecture called Flask to overcome the limitations of traditional MAC. The NSA has implemented this architecture in the Linux operating system, producing a Security-Enhanced Linux (SELinux) prototype, to make the technology available to a wider community and to enable further research into secure operating systems. NAI Labs has developed an example security policy configuration todemonstrate the benefits of the architecture and to provide foundation for others to use. This paper describes the security architecture, security mechanisms, application programming interface, security policy configuration and performance of SELinux.

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号