Verifying information flow goals in Security-Enhanced Linux
Verifying information flow goals in Security-Enhanced Linux
J. Guttman,Amy L. Herzog,John D. Ramsdell,C. Skorupka
2005 · DOI: 10.3233/JCS-2005-13105
Journal of computing and security · 88 Citations
TLDR
A formalization of the access control mechanism of the SELinux security server, together with a labeled transition system representing an Selinux configuration, provides the framework for determining information flow security goals achieved by systems running a secure O/S, specifically systems running Security-Enhanced Linux.
