Trusted Solaris over SELinux

Stephen Smalley sds at tycho.nsa.gov
Mon May 22 12:51:25 UTC 2006


On Sat, 2006-05-20 at 10:53 -0600, Stephen John Smoogen wrote:
> On 5/20/06, Martin Ebourne <lists at ebourne.me.uk> wrote:
> > On Sat, 2006-05-20 at 08:22 -0500, Justin Conover wrote:
> > > http://blogs.sun.com/roller/page/darren?entry=dear_ibm_please_consider_trusted
> > >
> > > I thought this was interesting.  Yeah, I use Solaris to so I read some
> > > Sun blogs too.  :)
> >
> > High on opinion, low on fact.
> >
> > Just how was that interesting? As a measure of desperation?
> >
> 
> It is low on fact, but in some ways is influential as Darren is a well
> known security person. On a cost area it does have an item that many
> business managers may have to look at:
> 
> Solaris is EAL4+ with various subsets already and is a known quantity.
> SeLinux implementations are not by themselves EAL4+.. a companies
> version might be in the future but not now.

Validated products:
http://niap.nist.gov/cc-scheme/vpl/vpl_type.html#operatingsystem
http://www.commoncriteriaportal.org/public/consumer/index.php?menu=4&orderindex=1&showcatagories=256

Products in evaluation:
http://niap.nist.gov/cc-scheme/in_evaluation.html

-- 
Stephen Smalley
National Security Agency




More information about the fedora-selinux-list mailing list