TIL that #FreeBSD has support for Mandatory Access Control.

That's really cool. Does anyone have any experiences using it or any resources?
So far I found the official Docs and the #TrustedBSD site.

@fiee Wenn man in Linux "keine Berechtigung" hat, eine Datei zu lesen, kann das nicht nur an den #UNIX-Berechtigungen (#DAC - discretionary access control) liegen, sondern auch an den #SELinux- oder #AppArmor-Berechtigungen (#MAC - mandatory access control), die mit
$ ls -Z
(man ls: -Z: print any security context)
angezeigt werden können. Ich weiß nicht, ob es bei #MacOS auch noch ein DAC-Modul gibt, ich hab gelesen, es soll mal #TrustedBSD gegeben haben?! Vielleicht liegt es daran...

@dangillmor it's a pity there are not open source operating system "distributions" that vet "package maintainer" individuals for all of the thousands of software application packages that most people might actually need, who then function as gatekeepers to weed out bad software releases, not to mention imposters, from infiltrating a distribution system of cryptographically signed and QA'd software, that is verified to comply with "distribution" policies.

Some day, perhaps.

#Devuan
#MEPIS
#BodhiLinux
#LinuxMint
#PCLinuxOS
#TrustedBSD
#Tails
#SubgraphOS
#QubesOS
#AlpineLinux