From f9758ae55818ae50719113be2b8ae4cf90799603 Mon Sep 17 00:00:00 2001 From: bauen1 Date: Fri, 8 May 2020 16:29:52 +0200 Subject: [PATCH] define lockdown class and access This was introduced in the merge b1dba2473114588be3df916bf629a61bdcc83737 in the linux kernel. Signed-off-by: bauen1 --- policy/flask/access_vectors | 6 ++++++ policy/flask/security_classes | 2 ++ 2 files changed, 8 insertions(+) diff --git a/policy/flask/access_vectors b/policy/flask/access_vectors index 48a3d5cd4..a9aceb46f 100644 --- a/policy/flask/access_vectors +++ b/policy/flask/access_vectors @@ -1051,3 +1051,9 @@ class perf_event read write } + +class lockdown +{ + integrity + confidentiality +} diff --git a/policy/flask/security_classes b/policy/flask/security_classes index efa1f4438..e62e4c957 100644 --- a/policy/flask/security_classes +++ b/policy/flask/security_classes @@ -196,4 +196,6 @@ class xdp_socket class perf_event +class lockdown + # FLASK