SE Linux
Security-Enhanced Linux
A Linux kernel feature enforcing mandatory access control policies on processes and files.
SELinux adds mandatory access control to Linux, labeling processes and resources and enforcing a central policy that confines what each program can do even when it runs as a privileged user. This containment limits the damage of a compromised service, since an exploited daemon is restricted to its policy domain. It operates in enforcing, permissive, or disabled modes, and is a common hardening measure on servers. On the exam, link SELinux to mandatory access control and host hardening, contrasting it with discretionary access control.
Looking SE Linux up is step one. Getting tested on it is step two.
A free account opens all 4 Domain 1 objectives, 271 exam-style questions with a lesson and a lab on each, a placement check that skips what you already know, and a dated plan. No card.
Not affiliated with or endorsed by CompTIA.
