On Wed, Feb 23, 2011 at 04:02:54PM -0500, Paul Moore wrote: > > > > I just noticed that because I started with a dummy policy where I had > > network_peer_controls disabled. I can easily live without that patch > > of course. > > Ah, that would explain it. Were you using the dummy policy generated by > scripts/selinux? Yes, I did. > If so, that might be a worthwhile patch to add that policy > capability to the generated policy. > Indeed, would be nice to have the network_peer_controls enabled in the generated dummy policy. I'll look at it. -- This message was distributed to subscribers of the selinux mailing list. If you no longer wish to subscribe, send mail to majordomo@xxxxxxxxxxxxx with the words "unsubscribe selinux" without quotes as the message.