UPDF AI

Verifying information flow goals in Security-Enhanced Linux

J. Guttman,Amy L. Herzog,John D. Ramsdell,C. Skorupka

2005 · DOI: 10.3233/JCS-2005-13105
Journal of computing and security · 88 Citations

TLDR

A formalization of the access control mechanism of the SELinux security server, together with a labeled transition system representing an Selinux configuration, provides the framework for determining information flow security goals achieved by systems running a secure O/S, specifically systems running Security-Enhanced Linux.