14.7 Sample Policy Modules

The mac_none policy provides sample prototypes and registration of all available policy entry points.

The mac_seeotheruids policy provides a simple access control policy without the use of labeling, relying only on information already present in the kernel objects.

The mac_biba policy provides a sample information flow based labeled access control policy, assigning labels to all kernel objects.

This, and other documents, can be downloaded from ftp://ftp.FreeBSD.org/pub/FreeBSD/doc/.

For questions about FreeBSD, read the documentation before contacting <questions@FreeBSD.org>.
For questions about this documentation, e-mail <doc@FreeBSD.org>.