Anyone have any info on "Security Enhanced Linux"? (NSA distro)

This is a discussion on Anyone have any info on "Security Enhanced Linux"? (NSA distro) within the Linux Security forums, part of the System Security and Security Related category; Hiya: Browsing for a 'nix based firewall router solution, I came across this distro on linux org, in their security ...


Go Back   Usenet Forums > System Security and Security Related > Linux Security

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #1 (permalink)  
Old 09-01-2003
Snake Plissken
 
Posts: n/a
Default Anyone have any info on "Security Enhanced Linux"? (NSA distro)

Hiya:

Browsing for a 'nix based firewall router solution, I came across this
distro on linux org, in their security section - it's called literally
Security Enhanced Linux, and states that they are put out by the NSA and
the University of Utah. I looked at their home page
(http://www.nsa.gov/selinux/) and it looks to be a locked down (in terms
of user access, minimalist) distro. They do have an FAQ there and source
code, along with several versions to dl.

One the one hand it would be pretty cool to have my firewall built by the
NSA. On ther other hand, it would suck to have my firewall built by the
NSA :) I was wondering if anyone knows anything about this or has tried
it. I don't have a buncha secrets to keep so I am not paranoid about it,
but it seems to be a bit prudent around before I blindly trust Big Brother
with my packets. thanks for any insight you can provide.

--
Replace spam with news to contact me.

Reply With Quote
  #2 (permalink)  
Old 09-01-2003
Arthur Clune
 
Posts: n/a
Default Re: Anyone have any info on "Security Enhanced Linux"? (NSA distro)

Snake Plissken <spam@takeoutthispart.level2.org> wrote:

: Browsing for a 'nix based firewall router solution, I came across this
: distro on linux org, in their security section - it's called literally
: Security Enhanced Linux

This may not be what you want for a firewall. It's an attempt to make
linux a trusted OS with proper separation of privilages i.e. no all-powerfull
root. It's a PITA to configure.

If you want a more vanilla secure linux see http://www.openwall.com or
try the grsecurity kernel patches.

Arthur


Reply With Quote
Reply
Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT +1. The time now is 10:00 AM.


Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0