2010-02-21 15:01:57
SELinux uses mandatory access controls like Role-Based Access Control (RBAC) and Multi-Level Security (MLS) to secure the Linux operating system. It operates on the principal of providing user, system programs and servers with the minimum amount of privilege required to perform their functions. Therefore if a program or server is compromised, then the damage that an attacker can cause is potentially limited to the program or server they have compromised.
Bastille is a powerful and flexible hardening tool but it cannot be compared to SELinux. They simply perform two very different functions.