Paul Moore wrote:
On Thursday, March 1 2007 1:43:11 pm Daniel J Walsh wrote:
Could you guys verify that they look good so we can get them upstream?

One quick question, I don't see the additional NetLabel permissions (see below) that we had decided upon in this patch and I don't recall seeing them go upstream earlier - did I miss them, i.e. are the already upstream?

The basic idea was to grant all domains recvfrom access, the additional allow rules were something along the lines of this ...

 allow domains unlabeled_t:{ tcp_socket udp_socket } recvfrom

That is in a different place. I am trying to verify the mls constraints here.

--
redhat-lspp mailing list
[email protected]
https://www.redhat.com/mailman/listinfo/redhat-lspp

Reply via email to