Chapter 10. Object Labeling

In this chapter

• 10.1 Introduction to Object Labeling

• 10.2 File-Related Object Labeling

• 10.3 Network and Socket Object Labeling

• 10.4 System V IPC

• 10.5 Miscellaneous Object Labeling

• 10.6 Initial Security Identifiers

• 10.7 Exploring Object Labeling with Apol

• 10.8 Summary

• Exercises

For the SELinux policy to work, all object instances must be labeled with a security context. In this chapter, we discuss the various means of applying security contexts to object instances, including how security contexts are assigned when objects are created and the later modification of those labels (called relabeling).

10.1 Introduction to Object Labeling

All objects in SELinux have an associated security context from the ...

Get SELinux by Example: Using Security Enhanced Linux now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.