On Wed, 21 May 2008, Stephen Smalley wrote: > Enable processes with CAP_MAC_ADMIN + mac_admin permission in policy > to get undefined contexts on inodes. This extends the support for > deferred mapping of security contexts in order to permit restorecon > and similar programs to see the raw file contexts unknown to the > system policy in order to check them. > > > Signed-off-by: Stephen Smalley <sds@xxxxxxxxxxxxx> > Applied to git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/selinux-2.6.git#for-akpm -- James Morris <jmorris@xxxxxxxxx> -- This message was distributed to subscribers of the selinux mailing list. If you no longer wish to subscribe, send mail to majordomo@xxxxxxxxxxxxx with the words "unsubscribe selinux" without quotes as the message.