Re: [SELinux-notebook PATCH] auditing.md: describe avc record permissive keyword

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Thu, Jul 9, 2020 at 10:14 AM Richard Haines
<richard_c_haines@xxxxxxxxxxxxxx> wrote:
>
> On Thu, 2020-07-09 at 09:50 +0200, Dominick Grift wrote:
> > This was added to Linux 4.17 via "selinux: Report permissive mode in
> > avc: denied messages."
> >
> > Signed-off-by: Dominick Grift <dominick.grift@xxxxxxxxxxx>
> > ---
> >  src/auditing.md | 6 ++++++
> >  1 file changed, 6 insertions(+)
> >
>
> Acked-by: Richard Haines <richard_c_haines@xxxxxxxxxxxxxx>

Merged into the main branch, thanks Dominick!

> > diff --git a/src/auditing.md b/src/auditing.md
> > index 19f8be6..295373a 100644
> > --- a/src/auditing.md
> > +++ b/src/auditing.md
> > @@ -161,6 +161,12 @@ section that follows.
> >  <td>tclass</td>
> >  <td>The object class of the target or object.</td>
> >  </tr>
> > +<tr>
> > +<td>permissive</td>
> > +<td>Keyword introduced in Linux 4.17 to indicate whether the event
> > +was denied or granted due to global or per-domain permissive
> > +mode.</td>
> > +</tr>
> >  </tbody>
> >  </table>

-- 
paul moore
www.paul-moore.com



[Index of Archives]     [Selinux Refpolicy]     [Linux SGX]     [Fedora Users]     [Fedora Desktop]     [Yosemite Photos]     [Yosemite Camping]     [Yosemite Campsites]     [KDE Users]     [Gnome Users]

  Powered by Linux