selinux-refpolicy/policy
Sugar, David 99a7c5c197 Add interface to read efivarfs_t directory
I'm seeing the following denial when using 'efivars --list'.  This
interface grants access
2019-12-17T15:22:06-05:00 ip-tsc-black tag_audit_log: type=AVC msg=audit(1576596109.149:95): avc:  denied  { read } for  pid=2329 comm="efivar" name="/" dev="efivarfs" ino=11266 scontext=system_u:system_r:my_app_t:s0 tcontext=system_u:object_r:efivarfs_t:s0 tclass=dir permissive=1

Signed-off-by: Dave Sugar <dsugar@tresys.com>
2019-12-26 12:00:32 -05:00
..
flask Fix file common ordering and kernel version from previous commit. 2019-10-31 03:09:14 -04:00
modules Add interface to read efivarfs_t directory 2019-12-26 12:00:32 -05:00
support
constraints
context_defaults
global_booleans
global_tunables
mcs
mls
policy_capabilities
users