Document Information
Preface
1. Solaris Trusted Extensions APIs and Security Policy
2. Labels and Clearances
3. Label Code Examples
4. Printing and the Label APIs
5. Interprocess Communications
6. Trusted X Window System
7. Label Builder APIs
8. Trusted Web Guard Prototype
9. Experimental Java Bindings for the Solaris Trusted Extensions Label APIs
A. Programmer's Reference
B. Solaris Trusted Extensions API Reference
Index
|
M
- m_label_alloc() routine
- code example, Determining the Relationship Between Two Labels
- declaration, Allocating and Freeing Memory for Labels
- m_label_dup() routine, declaration, Allocating and Freeing Memory for Labels
- m_label_free() routine, declaration, Allocating and Freeing Memory for Labels
- m_label_t type, Label APIs
- MAC (mandatory access control)
- Interprocess Communications
- Trusted X Window System Environment
- making socket exempt from, MAC-Exempt Sockets
- ModLabelData structure, ModLabelData Structure
- Motif application
- Label Builder widgets, ModLabelData Structure
- online help, Online Help for Label Builder
- multilevel operations, security policy for, Multilevel Operations
- multilevel ports
- description of
- Multilevel Ports
- Multilevel Port Information
- Multilevel Port Information
- using with UDP, Using Multilevel Ports With UDP
N
O
P
- PAF_SELAGNT flag, Moving Data Between Windows
- pid field, Data Types for X11
- plabel command, Detecting a Trusted Extensions System
- polyinstantiation, description of, Trusted X Window System Environment
- PORTMAPPER service, RPC Mechanism
- ports
- multilevel, Multilevel Port Information
- single-level, Multilevel Port Information
- printer banner page
- label translation
- Obtaining Printer Banner Information
- Translating Between Labels and Strings
- printing
- banner page, Printing Labeled Output
- get_peer_label() function, get_peer_label() Label-Aware Function
- label API and, Printing Labeled Output
- labeled output, Printing Labeled Output
- multilevel, Printing Labeled Output
- privileged tasks
- Label Builder, Privileged Operations and Label Builder
- labels, Privileged Operations and Labels
- multilevel port connections, Multilevel Port Information
- Trusted X Window System, Privileged Operations and the Trusted X Window System
- privileges
- file_dac_read, Privileged Operations and Labels
- file_dac_search
- Write-Down Policy in the Global Zone
- Privileged Operations and Labels
- file_dac_write, Privileged Operations and Labels
- file_downgrade_sl
- Labeled Zones
- Privileged Operations and Labels
- file_owner, Privileged Operations and Labels
- file_upgrade_sl
- Labeled Zones
- Privileged Operations and Labels
- net_bindmlp
- Multilevel Ports
- Multilevel Port Information
- AF_UNIX Family
- net_mac_aware
- MAC-Exempt Sockets
- MAC-Exempt Sockets
- sys_trans_label
- Privileged Operations and Labels
- Setting a Window Label
- Privileged Operations and Label Builder
- Extended Label Builder Operations
- win_config, Privileged Operations and the Trusted X Window System
- win_dac_read, Privileged Operations and the Trusted X Window System
- win_dac_write, Privileged Operations and the Trusted X Window System
- win_devices
- Keyboard, Pointer, and Server Control
- Privileged Operations and the Trusted X Window System
- win_dga, Privileged Operations and the Trusted X Window System
- win_downgrade_sl, Privileged Operations and the Trusted X Window System
- win_fontpath, Privileged Operations and the Trusted X Window System
- win_selection, Moving Data Between Windows
- win_upgrade_sl
- Privileged Operations and the Trusted X Window System
- Setting a Window Label
- process clearances, labels defined, Label Relationships
- processes
- binding to multilevel ports, Multilevel Ports
- in labeled zones, Labeled Zones
- multilevel initiated in global zone, Multilevel Operations
- writing down from global zone, Write-Down Policy in the Global Zone
- properties
- description of
- Trusted X Window System Security Attributes
- Trusted X Window System Security Policy
- privileges, Privileged Operations and the Trusted X Window System
R
S
- SCM_UCRED, Using Multilevel Ports With UDP
- security attribute flags, API declarations, Process Security Attribute Flags APIs
- security attributes
- accessing labels, Privileged Operations and Labels
- labels from remote hosts, Multilevel Ports
- Trusted X Window System
- contrast with Solaris, Trusted X Window System APIs
- description of, Trusted X Window System Security Attributes
- security policy
- CDE actions, Creating a CDE Action
- communication endpoints, Communication Endpoints
- definition of, Understanding Labels
- global zone, Labels in the Global Zone
- label guidelines, Privileged Operations and Labels
- labels, Privileged Operations and Labels
- multilevel operations, Multilevel Operations
- multilevel ports, Multilevel Port Information
- network, Default Network Policy
- sockets, AF_UNIX Family
- translating labels, Privileged Operations and Labels
- Trusted X Window System, Trusted X Window System Security Policy
- write-down in global zone, Write-Down Policy in the Global Zone
- Selection Manager
- bypassing with flag, Moving Data Between Windows
- security policy, Selection Manager
- sensitivity labels
- Sensitivity Labels
- Sensitivity Labels
- SensitivityLabel subclass
- code example, Translating Between Labels and Strings
- description of, SensitivityLabel Subclass
- methods, SensitivityLabel Subclass
- sessionid field, Data Types for X11
- setFileLabel method, declaration, Obtaining and Setting the Label of a File
- setflabel() routine
- code example, Setting a File Sensitivity Label
- declaration, Obtaining and Setting the Label of a File
- setpflags() system call, MAC-Exempt Sockets
- single-level ports, description of, Multilevel Port Information
- sl field
- Data Types for X11
- Data Types for X11
- SO_MAC_EXEMPT option, MAC-Exempt Sockets
- SO_RECVUCRED option, Multilevel Ports
- sockets
- access checks
- Communication Endpoints
- AF_UNIX Family
- exempt from MAC, MAC-Exempt Sockets
- software packages, creating, Creating a Software Package
- SOL_SOCKET, Using Multilevel Ports With UDP
- Solaris
- examples of Trusted Extensions APIs, Understanding Labels
- interfaces, API declarations, Solaris Library Routines and System Calls That Use Trusted Extensions Parameters
- SolarisLabel abstract class
- description of, SolarisLabel Abstract Class
- methods and static factories, SolarisLabel Abstract Class
- str_to_label() routine, code example, Setting a File Sensitivity Label
- strictly dominant labels, Label Relationships
- strictlyDominates method, declaration, Comparing Label Objects
- sys_trans_label privilege
- Privileged Operations and Labels
- Privileged Operations and Label Builder
- system calls
- API declarations, System Calls and Library Routines in Trusted Extensions
- fgetlabel() routine, Obtaining and Setting the Label of a File
- getlabel() routine, Obtaining and Setting the Label of a File
|