Trusted Extensions Configuration and Administration

Exit Print View

Updated: July 2014
 
 

Understanding Trusted Extensions

    The enabling and configuration of Trusted Extensions involves more than loading executable files, specifying your site's data, and setting configuration variables. Considerable background knowledge is required. Trusted Extensions software provides a labeled environment that is based on two Oracle Solaris features:

  • Capabilities that in most UNIX® environments are assigned to root are handled by several administrative roles.

  • The ability to override security policy can be assigned to specific users and applications.

In Trusted Extensions, access to data is controlled by special security tags. These tags are called labels. Labels are assigned to users, processes, and objects, such as data files and directories. These labels supply mandatory access control (MAC), in addition to UNIX permissions, or discretionary access control (DAC).