On 2/3/20 8:34 AM, Stephen Smalley wrote:
On 1/31/20 1:39 PM, Christian Göttsche wrote:Add support for new SELinux policy capability genfs_seclabel_symlinks. With this capability enabled symlinks on kernel filesystems will receive contexts based on genfscon statements, like directories and files, and not be restricted to the respective filesystem root sid. Signed-off-by: Christian Göttsche <cgzones@xxxxxxxxxxxxxx>Acked-by: Stephen Smalley <sds@xxxxxxxxxxxxx>
Applied.