selinux-refpolicy/policy/modules
Sugar, David 99a7c5c197 Add interface to read efivarfs_t directory
I'm seeing the following denial when using 'efivars --list'.  This
interface grants access
2019-12-17T15:22:06-05:00 ip-tsc-black tag_audit_log: type=AVC msg=audit(1576596109.149:95): avc:  denied  { read } for  pid=2329 comm="efivar" name="/" dev="efivarfs" ino=11266 scontext=system_u:system_r:my_app_t:s0 tcontext=system_u:object_r:efivarfs_t:s0 tclass=dir permissive=1

Signed-off-by: Dave Sugar <dsugar@tresys.com>
2019-12-26 12:00:32 -05:00
..
admin various: Module version bump. 2019-12-26 11:48:27 -05:00
apps Add policy for CryFS, encfs and gocryptfs 2019-12-22 18:03:53 +01:00
kernel Add interface to read efivarfs_t directory 2019-12-26 12:00:32 -05:00
roles various: Module version bump. 2019-12-26 11:48:27 -05:00
services various: Module version bump. 2019-11-23 09:54:36 -05:00
system various: Module version bump. 2019-12-26 11:48:27 -05:00