A mandatory access control mechanism that restricts what each program can access.
A mandatory access control (MAC) mechanism with a similar goal to SELinux, restricting each program's file access and privileges via a profile. Considered simpler to configure than SELinux, and enabled by default on distributions such as Ubuntu.
© 2026 ITBGM