b4e7ac
#
b4e7ac
# Multi-Level Security translation table for SELinux
b4e7ac
# 
b4e7ac
# Uncomment the following to disable translation libary
b4e7ac
# disable=1
b4e7ac
#
b4e7ac
# Objects can be labeled with one of 16 levels and be categorized with 0-1023 
b4e7ac
# categories defined by the admin.
b4e7ac
# Objects can be in more than one category at a time.
b4e7ac
# Users can modify this table to translate the MLS labels for different purpose.
b4e7ac
#
b4e7ac
# Assumptions: using below MLS labels.
b4e7ac
#  SystemLow
b4e7ac
#  SystemHigh
b4e7ac
#  Unclassified 
b4e7ac
#  Secret with compartments A and B.
b4e7ac
# 
b4e7ac
# SystemLow and SystemHigh
b4e7ac
s0=SystemLow
b4e7ac
s15:c0.c1023=SystemHigh
b4e7ac
s0-s15:c0.c1023=SystemLow-SystemHigh
b4e7ac
b4e7ac
# Unclassified level
b4e7ac
s1=Unclassified
b4e7ac
b4e7ac
# Secret level with compartments
b4e7ac
s2=Secret
b4e7ac
s2:c0=A
b4e7ac
s2:c1=B
b4e7ac
b4e7ac
# ranges for Unclassified
b4e7ac
s0-s1=SystemLow-Unclassified
b4e7ac
s1-s2=Unclassified-Secret
b4e7ac
s1-s15:c0.c1023=Unclassified-SystemHigh
b4e7ac
b4e7ac
# ranges for Secret with compartments
b4e7ac
s0-s2=SystemLow-Secret
b4e7ac
s0-s2:c0=SystemLow-Secret:A
b4e7ac
s0-s2:c1=SystemLow-Secret:B
b4e7ac
s0-s2:c0,c1=SystemLow-Secret:AB
b4e7ac
s1-s2:c0=Unclassified-Secret:A
b4e7ac
s1-s2:c1=Unclassified-Secret:B
b4e7ac
s1-s2:c0,c1=Unclassified-Secret:AB
b4e7ac
s2-s2:c0=Secret-Secret:A
b4e7ac
s2-s2:c1=Secret-Secret:B
b4e7ac
s2-s2:c0,c1=Secret-Secret:AB
b4e7ac
s2-s15:c0.c1023=Secret-SystemHigh
b4e7ac
s2:c0-s2:c0,c1=Secret:A-Secret:AB
b4e7ac
s2:c0-s15:c0.c1023=Secret:A-SystemHigh
b4e7ac
s2:c1-s2:c0,c1=Secret:B-Secret:AB
b4e7ac
s2:c1-s15:c0.c1023=Secret:B-SystemHigh
b4e7ac
s2:c0,c1-s15:c0.c1023=Secret:AB-SystemHigh