How to implement MLS (BLP concepts) in SELinux?

April 14, 2015 508 views
Security Linux Commands CentOS

May I ask you a question,
I'm currently studying about bell lapadula model for my research and I need to implementation it as an example. Can BLP model implement in SELinux? If it can, can you explain to me, how to do it, because I'm not really sure about how to implement it in SELinux?

Thank you so much..
If you can help me, I really appreciate it..

1 Answer

SELinux is an implementation of the Bell–LaPadula model. The CentOS docs are informative:

SELinux, like most other systems that protect multi-level data, uses the BLP model. This model specifies how information can flow within the system based on labels attached to each subject and object. Refer to the following diagram:

Have another answer? Share your knowledge.