Skip to main content

Section outline

    • What is SELinux, MAC, and DAC?
    • SELinux history and evolution.
    • Core policies: MLS, TE, RBAC, UBAC.
    • How SELinux works: LSM hooks.
    • SELinux Labels and Policies: Domains, Types, Attributes.
    • Classes and Permissions.
    • Understanding AVC Denials and policy enforcement.
    • SELinux Macros:
      • File permissions
      • Socket permissions
      • Type enforcement
    • SELinux Tools: audit2allow, sepolicy-analyze.