OpenSUSE 11.1 to Enable SELinux

The OpenSUSE project has announced that OpenSUSE version 11.1 will include basic SELinux enablement. This effort will include enabling SELinux in their kernel, requisite patches to system tools, and SELinux support libraries. SELinux-specific tools will not be shipped by default, but will be available via the distribution repositories. Initial security policies, if shipped, will be limited to standard reference and minimal policies. SELinux will also be shipped as part of SUSE Linux Enterprise 11 as a technology preview. Community discussion on the topic is directed to the OpenSUSE Factory mailing list.

New SELinux Userland Project Site

Tresys have announced the launch of a new source repository, bugtracker and wiki for the SELinux userland code, which may be found here. The site utilizes trac for project management and git as the source code management system. Developers should use this new repository instead of the old sourceforge site.

CDS Framework Toolkit 3.0 Released

Tresys have announced the release of version 3.0 of their CDS (Cross Domain Solutions) Toolkit, an Eclipse-based IDE for developing CDSs with SELinux. Notable features introduced in this release include support for MLS and labeled networking, with enhancements to end user customization of generated policy and to the general development environment.

SGI Completes EAL4+ Certification on RHEL 5.1

SGI have now completed certification for LSPP, RBACPP and CAPP at EAL4 augmented under the Common Criteria schemes, for their SGI Altix and Altix XE platforms. This certification follows similar efforts by IBM and HP. A copy of the validation report is available here.

Ruby Bindings for libselinux

Dan Walsh has announced preliminary Ruby support for libselinux (the core SELinux management library). This is to enable the integration of the Puppet systems management tool with SELinux, and should also allow other Ruby applications to be similarly integrated.

Reference Policy 20080702 Released

Chris PeBenito has announced the latest release of Reference Policy. Notable changes in this release include the ability to specify SELinux roles in loadable policy modules, improved labeled networking support, and new policy modules for virtualization packages.

NetLabel Tools 0.18 Released

Paul Moore of HP has announced the release of version 0.18 of NetLabel Tools, a suite for managing explict labeled networking (i.e. attaching labels to packets via IP options) under Linux. This release adds support for static and fallback labels in the 2.6.25 kernel, in addition to several bugfixes and enhancements.

Core SELinux version R080611 released

The NSA have announced the release of updated version of the core SELinux code, available from their web site. This release includes support for permissive domains (allowing permissive mode on a per-domain basis), user and role mapping via sepol, and various minor fixes and enhancements.

OpenSolaris FMAC Alpha 1 Released

OpenSolaris developers have announced the first release (Alpha 1) of source code for the FMAC project. This code drop of the current policy and toolchain infrastructure work allows security policy to be loaded into the operating system but not yet enforced.

2008 SELinux Developer Summit Schedule Published

The schedule for the 2008 SELinux Developer Summit has been published. The one-day event will be held in Ottawa in July as an OLS mini-summit, and consist of a series of discussion panels with presentations.