selinux-refpolicy/policy/modules/kernel
Chris PeBenito b94f45d760 Revise selinux module interfaces for perms protected by neverallows.
Use the allow rules on the relevant attributes in selinux.te, rather than
only using the attribute to pass the neverallows.

Closes #14
2015-11-04 15:10:29 -05:00
..
corecommands.fc Implement core systemd policy. 2015-10-23 10:16:59 -04:00
corecommands.if Additional rearrangement in corecommands, along with module version bump. 2010-10-27 14:09:00 -04:00
corecommands.te Module version bump for systemd additions. 2015-10-23 14:53:14 -04:00
corenetwork.fc Start pulling in kernel layer pieces from Fedora. 2011-03-29 10:33:43 -04:00
corenetwork.if.in Corenetwork policy size optimization from Dan Walsh. 2011-08-26 09:03:25 -04:00
corenetwork.if.m4 trunk: Add support for network interfaces with access controlled by a Boolean from the CLIP project. 2009-01-15 20:31:06 +00:00
corenetwork.te.in Bump module versions for release. 2014-12-03 13:37:38 -05:00
corenetwork.te.m4 Fix corenetwork port declaration to choose either reserved or unreserved. 2011-10-04 15:31:08 -04:00
devices.fc adds vfio device support to base policy 2015-09-15 08:17:31 -04:00
devices.if Add sysfs_types attribute. 2015-10-23 10:17:46 -04:00
devices.te Module version bump for systemd additions. 2015-10-23 14:53:14 -04:00
domain.fc remove extra level of directory 2006-07-12 20:32:27 +00:00
domain.if Fix domain_mmap_low() to be a proper tunable. 2015-02-09 16:02:36 -05:00
domain.te Module version bump for systemd additions. 2015-10-23 14:53:14 -04:00
files.fc Label (/var)?/tmp/systemd-private-.../tmp like /tmp 2014-08-26 08:22:53 -04:00
files.if Add systemd units for core refpolicy services. 2015-10-23 10:17:46 -04:00
files.te Module version bump for systemd additions. 2015-10-23 14:53:14 -04:00
filesystem.fc filesystem: label cgroup symlinks 2014-04-21 09:32:30 -04:00
filesystem.if Implement core systemd policy. 2015-10-23 10:16:59 -04:00
filesystem.te Module version bump for systemd additions. 2015-10-23 14:53:14 -04:00
kernel.fc Add fc for /sys/kernel/debug as debugfs_t 2015-05-06 09:49:40 -04:00
kernel.if Implement core systemd policy. 2015-10-23 10:16:59 -04:00
kernel.te Module version bump for systemd additions. 2015-10-23 14:53:14 -04:00
mcs.fc remove extra level of directory 2006-07-12 20:32:27 +00:00
mcs.if Move mcs_constrained() impementation. 2012-11-28 16:26:05 -05:00
mcs.te Bump module versions for release. 2013-04-24 16:14:52 -04:00
metadata.xml remove extra level of directory 2006-07-12 20:32:27 +00:00
mls.fc remove extra level of directory 2006-07-12 20:32:27 +00:00
mls.if trunk: whitespace fixes 2009-06-26 14:40:13 +00:00
mls.te Whitespace change: drop unnecessary blank line at the start of .te files. 2010-06-10 08:16:35 -04:00
selinux.fc remove extra level of directory 2006-07-12 20:32:27 +00:00
selinux.if Revise selinux module interfaces for perms protected by neverallows. 2015-11-04 15:10:29 -05:00
selinux.te Revise selinux module interfaces for perms protected by neverallows. 2015-11-04 15:10:29 -05:00
storage.fc File contexts for zram 2014-06-25 10:34:45 -04:00
storage.if Fix misspelling 2014-06-09 08:21:45 -04:00
storage.te Bump module versions for release. 2014-12-03 13:37:38 -05:00
terminal.fc Initial virtio console device 2013-09-26 10:27:29 -04:00
terminal.if Implement core systemd policy. 2015-10-23 10:16:59 -04:00
terminal.te Module version bump for systemd additions. 2015-10-23 14:53:14 -04:00
ubac.fc trunk: add missing ubac module. 2008-11-05 16:11:27 +00:00
ubac.if Improve the documentation of ubac_constrained(). 2010-03-02 11:28:44 -05:00
ubac.te Whitespace change: drop unnecessary blank line at the start of .te files. 2010-06-10 08:16:35 -04:00