GNU-Darwin and SEDarwin
A related project has also surfaced; SEDarwin, a port of the TrustedBSD
Mandatory Access Control Framework to Darwin. From the announcement: "The October 31 snapshot
includes the most recent SELinux kernel and user space components
available. We are still working to adapt the Treysys reference policy for
Apple's System, but the kernel and user space components are largely
complete.
"
Posted Nov 9, 2006 13:55 UTC (Thu)
by davecb (subscriber, #1574)
[Link]
--dave
That's cool: the MAC code underliesGNU-Darwin and SEDarwin
a bunch of useful functionality, including
ate least fine-grained capabilites and
containers (aka zones), although you
wouldn't guess than on first acquaintance