Johannes Segitz
jsegitz
- proactive-security 0 tasks
- reactive-security 0 tasks
- security-team 4 tasks
Involved Projects and Packages
Security-enhanced Linux is a feature of the Linux® kernel and a number
of utilities with enhanced security functionality designed to add
mandatory access controls to Linux. The Security-enhanced Linux
kernel contains new architectural components originally developed to
improve the security of the Flask operating system. These
architectural components provide general support for the enforcement
of many kinds of mandatory access control policies, including those
based on the concepts of Type Enforcement®, Role-based Access
Control, and Multi-level Security.
mcstrans provides an translation daemon to translate SELinux categories.
from internal representations to user defined representation.
Security-enhanced Linux is a feature of the Linux(R) kernel and a
number of utilities with enhanced security functionality designed to
add mandatory access controls to Linux. The Security-enhanced Linux
kernel contains new architectural components originally developed to
improve the security of the Flask operating system. These architectural
components provide general support for the enforcement of many kinds of
mandatory access control policies, including those based on the
concepts of Type Enforcement(R), Role-based Access Control, and
Multi-level Security.
policycoreutils contains the policy core utilities that are required
for basic operation of a SELinux system. These utilities include
load_policy to load policies, setfiles to label filesystems, newrole to
switch roles, and run_init to run /etc/init.d scripts in the proper
context.
Daemon that watches for file creation and then sets the default SELinux file context
SETools is a collection of graphical tools, command-line tools, and
libraries designed to facilitate SELinux policy analysis.
Please only use this if you're on SLE 15.4 or 15.5 *and* can't update to the new toolchain. The packages here will not receive additional fixes.
If you are using Leap or SLE from 15.6 and onwards, please use this repository instead:
https://build.opensuse.org/package/show/security:SELinux/selinux-policy
The Docker Bench for Security is a script that checks for dozens of common
best-practices around deploying Docker containers in production.
The tests are all automated, and are inspired by the CIS Docker 1.11.0 Benchmark.
( https://benchmarks.cisecurity.org/tools2/docker/CIS_Docker_1.11.0_Benchmark_v1.0.0.pdf )