On Thursday, March 1 2007 1:43:11 pm Daniel J Walsh wrote:
> Could you guys verify that they look good so we can get them upstream?
One quick question, I don't see the additional NetLabel permissions (see
below) that we had decided upon in this patch and I don't recall seeing them
go upstream earlier - did I miss them, i.e. are the already upstream?
The basic idea was to grant all domains recvfrom access, the additional allow
rules were something along the lines of this ...
allow domains unlabeled_t:{ tcp_socket udp_socket } recvfrom
--
paul moore
linux security @ hp
--
redhat-lspp mailing list
[email protected]
https://www.redhat.com/mailman/listinfo/redhat-lspp