Visible to the public SEFlowViz: A Visualization Tool for SELinux Policy Analysis

TitleSEFlowViz: A Visualization Tool for SELinux Policy Analysis
Publication TypeConference Paper
Year of Publication2021
AuthorsSingh, Karan Kumar, B S, Radhika, Shyamasundar, R K
Conference Name2021 12th International Conference on Information and Communication Systems (ICICS)
KeywordsCollaboration, Communication systems, data mining, Neo4j, policy-based governance, pubcrawl, Readers-Writers Flow Model, seandroid, security, Security Policies Analysis, selinux, Tools, visual databases, visualization
AbstractSELinux policies used in practice are generally large and complex. As a result, it is difficult for the policy writers to completely understand the policy and ensure that the policy meets the intended security goals. To remedy this, we have developed a tool called SEFlowViz that helps in visualizing the information flows of a policy and thereby helps in creating flow-secure policies. The tool uses the graph database Neo4j to visualize the policy. Along with visualization, the tool also supports extracting various information regarding the policy and its components through queries. Furthermore, the tool also supports the addition and deletion of rules which is useful in converting inconsistent policies into consistent policies.
DOI10.1109/ICICS52457.2021.9464541
Citation Keysingh_seflowviz_2021