|
Simplified Mandatory Access Control Kernel |
|
|
|
Source: Kernel Trap - Posted by Eckie Silapaswang
|
Smack is the Simplified Mandatory Access Control Kernel," Casey Schaufler said posting the third version of his patchest. He explained, "Smack implements mandatory access control (MAC) using labels attached to tasks and data containers, including files, SVIPC, and other tasks. Smack is a kernel based scheme that requires an absolute minimum of application support and a very small amount of configuration data."
It's always nice to have security at the kernel level - how does SMACK stack up to other security implementations? Have you been able to configure something similar with a good set of SELinux rules?
Read this full article at Kernel Trap
Powered by AkoComment! |