Why we should care
Posted Aug 18, 2005 11:49 UTC (Thu) by
druiloor (guest, #26069)
In reply to:
Why we should care by flewellyn
Parent article:
An overview of multilevel security
As i see it, most of this MAC stuff could (theoretically) be done with a combination of: Unix groups, POSIX filesystem ACLs, and extended artibutes (administated with like CAP_LINUX_IMMUTABLE privs.)
However that might be major pain, and not al all easy to get right ...
What i found to be a good read, discussing security inc MAC, MLS, et al:
http://www.google.com/search?q=gasserbook
(
Log in to post comments)