SELinux provides access control security policies, including mandatory access controls (MAC).
Binaries in selinux-utils
$ apt-file show selinux-utils | grep -P /usr/s?bin/ | cut -d' ' -f 2
/usr/sbin/avcstat
/usr/sbin/compute_av
/usr/sbin/compute_create
/usr/sbin/compute_member
/usr/sbin/compute_relabel
/usr/sbin/getconlist
/usr/sbin/getdefaultcon
/usr/sbin/getenforce
/usr/sbin/getfilecon
/usr/sbin/getpidcon
/usr/sbin/getsebool
/usr/sbin/getseuser
/usr/sbin/matchpathcon
/usr/sbin/policyvers
/usr/sbin/sefcontext_compile
/usr/sbin/selabel_digest
/usr/sbin/selabel_get_digests_all_partial_matches
/usr/sbin/selabel_lookup
/usr/sbin/selabel_lookup_best_match
/usr/sbin/selabel_partial_match
/usr/sbin/selinux_check_access
/usr/sbin/selinux_check_securetty_context
/usr/sbin/selinuxenabled
/usr/sbin/selinuxexeccon
/usr/sbin/setenforce
/usr/sbin/setfilecon
/usr/sbin/togglesebool
/usr/sbin/validatetrans