SELinux Integrity Instrumentation (SII): Instrumenting SELinux for configuration auditing and integrity monitoring.
详细信息   
  • 作者:Libassi ; Mike.
  • 学历:D.C.S.
  • 年:2016
  • 毕业院校:Colorado Technical University.bInformation Technology.
  • Department:Informationtechnology.
  • ISBN:9781321967043
  • CBH:3717282
  • FileSize:2602662
  • Pages:168
文摘
SELinux is lacking methods to prove compliance with security policies and detect change. The SELinux Integrity Instrumentation (SII) parses key parts of SELinux and the Linux operating system that provide a configuration baseline. SII uses sets of hashing algorithms that allow snapshots to be taken and compared against the baseline. Configuration changes to Services, Booleans, and File Context were detected, and differences displayed. Further, the type (domain) is parsed, and relationships between services, Booleans, and file context can be viewed based on the domain. SII offers a foundation that can be explored for use standalone or integrated into existing SELinux tools. SII can be used by security administrators to ensure configuration integrity and the ability to audit configurations to security goals. It is critical to measure what needs to be managed, and SII brings a unique and innovative way to help manage SELinux.

© 2004-2018 中国地质图书馆版权所有 京ICP备05064691号 京公网安备11010802017129号

地址:北京市海淀区学院路29号 邮编:100083

电话:办公室:(+86 10)66554848;文献借阅、咨询服务、科技查新:66554700