selinux-refpolicy/policy/modules
Dominick Grift c2f056b2f6 Implement mcs_constrained_type
This process is not allowed to interact with subjects or operate on
objects that it would otherwise be able to interact with or operate on
respectively.

This is, i think, to make sure that specified processes cannot interact
with subject or operate on objects regardless of its mcs range.

It is used by svirt and probably also by sandbox

Signed-off-by: Dominick Grift <dominick.grift@gmail.com>
2012-11-28 16:12:25 -05:00
..
admin Module version bump for logging and tcpdump fixes from Sven Vermeulen. 2012-11-27 09:57:13 -05:00
apps Move modules to contrib submodule. 2011-09-09 10:10:03 -04:00
contrib@a9f692104e Update contrib. 2012-11-26 09:38:47 -05:00
kernel Implement mcs_constrained_type 2012-11-28 16:12:25 -05:00
roles Module version bump/contrib sync. 2012-10-30 16:12:14 -04:00
services Module version bump for Debian ssh-keysign location from Laurent Bigonville. 2012-11-26 11:13:12 -05:00
system Module version bump for logging and tcpdump fixes from Sven Vermeulen. 2012-11-27 09:57:13 -05:00