Title :
A System for Distributed SELinux Policy Management
Author :
Lugo, Pedro Chavez ; Garcia, Juan Manuel Garcia ; Flores, Juan J.
Author_Institution :
Div. de Est. de Postgrado, Univ. Michoacana, Morelia, Mexico
Abstract :
Access control in SELinux is designed for a monolithic operating system. In order to apply SELinux in distributed environments it is necessary to extend the policy specification language to include the notion of location. This paper presents a system that translates a location extended policy to local-policies. A policy server does this translation and distributes local policies to the corresponding hosts. The system implementation results are discussed.
Keywords :
Linux; authorisation; distributed processing; specification languages; access control mechanism; distributed SELinux policy management; monolithic operating system; policy server; policy specification language; Access control; Authentication; Communication system security; Computer security; Conference management; Kernel; Linux; National security; Operating systems; Specification languages; Access; Kerberos; SELinux; administration; control; distributed; policies;
Conference_Titel :
Network and System Security, 2009. NSS '09. Third International Conference on
Conference_Location :
Gold Coast, QLD
Print_ISBN :
978-1-4244-5087-9
Electronic_ISBN :
978-0-7695-3838-9
DOI :
10.1109/NSS.2009.91