For a process's security context (user, role, type), there maybe a
conflict in the policy. for e.g. for user user_u, access to the kernel's
ring buffer may not be allowed, but for role role_r, it may be allowed.
The same process will have user_u and role_r.
So in case of conflicting permissions between user, role and type who's
permission will the security server respect -- user's, role's or type's?
_______________________________________________
Selinux mailing list
Selinux@xxxxxxxxxxxxx
To unsubscribe, send email to Selinux-leave@xxxxxxxxxxxxx.
To get help, send an email containing "help" to Selinux-request@xxxxxxxxxxxxx.