On Thu, 17 Feb 2005, Juan Espino wrote:
Hello all,
SELinux enforces a Mandatory Access Control (MAC) Policy based on Bell and
Lapadula Model. I understand the read control property (no read up) and the
write control (no write down), but in this model there are another property
called tranquility property, I don't know very well how SELinux enforces
this property,
SELinux includes an experimental MLS implementation based on BLP. This
feature is not currently enabled in Fedora.
Thus, it may be better to discuss the MLS component on the NSA list:
http://www.nsa.gov/selinux/info/list.cfm?MenuID=41.1.1.9
- James
--
James Morris
<jmorris(a)redhat.com>