Re: [PATCH 02/10] selinux: Perform postroute access control checks after IPsec transfomations

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Wed, Feb 23, 2011 at 04:02:54PM -0500, Paul Moore wrote:
> > 
> > I just noticed that because I started with a dummy policy where I had
> > network_peer_controls disabled. I can easily live without that patch
> > of course.
> 
> Ah, that would explain it.  Were you using the dummy policy generated by 
> scripts/selinux?  

Yes, I did.

> If so, that might be a worthwhile patch to add that policy 
> capability to the generated policy.
> 

Indeed, would be nice to have the network_peer_controls enabled
in the generated dummy policy. I'll look at it.

--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@xxxxxxxxxxxxx with
the words "unsubscribe selinux" without quotes as the message.


[Index of Archives]     [Selinux Refpolicy]     [Linux SGX]     [Fedora Users]     [Fedora Desktop]     [Yosemite Photos]     [Yosemite Camping]     [Yosemite Campsites]     [KDE Users]     [Gnome Users]

  Powered by Linux