Selinux

Some articles on selinux:

RSBAC and Other Solutions
... RSBAC is very close to SELinux functionality wise as they share a lot more in their design than other access controls such as AppArmor, etc ... is technically a replacement for LSM itself, and implement modules that are similar to SELinux, but with more and additional functionality ... While both SELinux and RSBAC enabled system have similar performance impact, LSM alone performance impact is negligible compared to the RSBAC framework alone ...
App Armor
... AppArmor is offered in part as an alternative to SELinux, which critics consider difficult for administrators to set up and maintain ... Unlike SELinux, which is based on applying labels to files, AppArmor works with file paths ... of AppArmor claim that it is less complex and easier for the average user to learn than SELinux ...
Comparison Of Linux Distributions - Security Features
... Software executable space protection grsecurity RSBAC Debian/Ubuntu Yes SELinux, AppArmor PaX Optional Optional Fedora Yes SELinux Exec Shield No No Gentoo ...
Unix Security - SELinux
... SELinux is the set of kernel extensions to control access more precisely, strictly defining both if and how files, folders, network ports and other resources can be accessed by the confined process ...
Simplified Mandatory Access Control Kernel - Criticism
... Smack has been criticized for being written as a new LSM module instead of an SELinux security policy which can provide equivalent functionality ... Such SELinux policies have been proposed, but none had been demonstrated ... Smack's author replied that it would not be practical due to SELinux's complicated configuration syntax and the philosophical difference between Smack and SELinux designs ...