On Thursday, March 1 2007 1:43:11 pm Daniel J Walsh wrote:
> Could you guys verify that they look good so we can get them upstream?

One quick question, I don't see the additional NetLabel permissions (see 
below) that we had decided upon in this patch and I don't recall seeing them 
go upstream earlier - did I miss them, i.e. are the already upstream?

The basic idea was to grant all domains recvfrom access, the additional allow 
rules were something along the lines of this ...

 allow domains unlabeled_t:{ tcp_socket udp_socket } recvfrom

-- 
paul moore
linux security @ hp

--
redhat-lspp mailing list
[email protected]
https://www.redhat.com/mailman/listinfo/redhat-lspp

Reply via email to