selinux-refpolicy/policy/support
Russell Coker 69215f0664 inherited file and fifo perms
The following patch defines new macros rw_inherited_fifo_file_perms and
rw_inherited_term_perms for the obvious reason.

I've had this in Debian for a while and some Debian policy relies on it.

I think it's appropriate to include this before including any policy that
relies on it because it's an obvious foundation for writing good policy.

We could have inherited perms macros for other object types, but terminals
and fifos are the main ones that get inherited.  The next best candidate
for such a macro is a sock_file, and that's largely due to systemd setting
programs stdout/stderr to unix domain sockets.
2017-02-12 13:55:25 -05:00
..
file_patterns.spt update policy/support macros 2016-12-01 19:38:14 +01:00
ipc_patterns.spt update policy/support macros 2016-12-01 19:38:14 +01:00
loadable_module.spt Remove deprecated optional_policy usage. 2011-10-14 10:22:16 -04:00
misc_macros.spt remove trailing whitespaces 2016-12-06 13:45:13 +01:00
misc_patterns.spt update policy/support macros 2016-12-01 19:38:14 +01:00
mls_mcs_macros.spt - Move range transitions to modules. 2006-10-04 17:25:34 +00:00
obj_perm_sets.spt inherited file and fifo perms 2017-02-12 13:55:25 -05:00