"I see. Pathname based controls. In SELinux."
But this isn't pathname-based access controls at all.
It's delegation of labeling responsibility. If you have labeling authority, either you do all the labeling yourself or you delegate the responsibility, to a human or to a computer, and to do that you must give instructions.
The security labels are applied directly to the object; its name is immediately completely irrelevant, and that's just as it should be.
Copyright © 2017, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds