Stephen Smalley wrote:
On Wed, 2008-04-09 at 15:30 -0500, Xavier Toth wrote:
For now I don't think that's a problem as I was looking at using
avc_has_perm and the context to sid conversion function.
What's the status on this? I see patches in the Fedora libselinux
package to add the AVC interfaces to the swig bindings, but they aren't
upstream. Do they work as expected?
The interfaces I'm using (avc_open, avc_reset, avc_context_to_sid,
avc_has_perm_noaudit) are working as expected.
Should they be upstreamed?
I think so.
On Wed, Apr 9, 2008 at 12:30 PM, Stephen Smalley <sds@xxxxxxxxxxxxx> wrote:
On Tue, 2008-04-08 at 17:02 -0500, Xavier Toth wrote:
> Can these functions get swig'd and their wrappers built into _selinux.so?
Patches accepted.
One possible issue here is function pointer callbacks, which is a more
general problem than just the avc interfaces in libselinux. But if you
are ok with the default callbacks, I suppose there is no problem there.
--
Stephen Smalley
National Security Agency
--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@xxxxxxxxxxxxx with
the words "unsubscribe selinux" without quotes as the message.
--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@xxxxxxxxxxxxx with
the words "unsubscribe selinux" without quotes as the message.