* [PATCH] Explicitly declare the role "base_r"
@ 2015-07-07 21:10 Laurent Bigonville
2015-07-13 0:24 ` Paul Moore
0 siblings, 1 reply; 2+ messages in thread
From: Laurent Bigonville @ 2015-07-07 21:10 UTC (permalink / raw)
To: selinux; +Cc: linux-kernel
From: Laurent Bigonville <bigon@bigon.be>
This fixes the compilation of policy generated by mdp with the recent
version of checkpolicy.
Signed-off-by: Laurent Bigonville <bigon@bigon.be>
---
scripts/selinux/mdp/mdp.c | 1 +
1 file changed, 1 insertion(+)
diff --git a/scripts/selinux/mdp/mdp.c b/scripts/selinux/mdp/mdp.c
index 62b34ce..e10beb1 100644
--- a/scripts/selinux/mdp/mdp.c
+++ b/scripts/selinux/mdp/mdp.c
@@ -98,6 +98,7 @@ int main(int argc, char *argv[])
/* types, roles, and allows */
fprintf(fout, "type base_t;\n");
+ fprintf(fout, "role base_r;\n");
fprintf(fout, "role base_r types { base_t };\n");
for (i = 0; secclass_map[i].name; i++)
fprintf(fout, "allow base_t base_t:%s *;\n",
--
2.1.4
^ permalink raw reply [flat|nested] 2+ messages in thread
* Re: [PATCH] Explicitly declare the role "base_r"
2015-07-07 21:10 [PATCH] Explicitly declare the role "base_r" Laurent Bigonville
@ 2015-07-13 0:24 ` Paul Moore
0 siblings, 0 replies; 2+ messages in thread
From: Paul Moore @ 2015-07-13 0:24 UTC (permalink / raw)
To: Laurent Bigonville; +Cc: selinux, linux-kernel
On Tue, Jul 7, 2015 at 5:10 PM, Laurent Bigonville <bigon@debian.org> wrote:
> From: Laurent Bigonville <bigon@bigon.be>
>
> This fixes the compilation of policy generated by mdp with the recent
> version of checkpolicy.
>
> Signed-off-by: Laurent Bigonville <bigon@bigon.be>
> ---
> scripts/selinux/mdp/mdp.c | 1 +
> 1 file changed, 1 insertion(+)
Merged into selinux#next, thank you.
> diff --git a/scripts/selinux/mdp/mdp.c b/scripts/selinux/mdp/mdp.c
> index 62b34ce..e10beb1 100644
> --- a/scripts/selinux/mdp/mdp.c
> +++ b/scripts/selinux/mdp/mdp.c
> @@ -98,6 +98,7 @@ int main(int argc, char *argv[])
>
> /* types, roles, and allows */
> fprintf(fout, "type base_t;\n");
> + fprintf(fout, "role base_r;\n");
> fprintf(fout, "role base_r types { base_t };\n");
> for (i = 0; secclass_map[i].name; i++)
> fprintf(fout, "allow base_t base_t:%s *;\n",
> --
> 2.1.4
--
paul moore
www.paul-moore.com
^ permalink raw reply [flat|nested] 2+ messages in thread
end of thread, other threads:[~2015-07-13 0:24 UTC | newest]
Thread overview: 2+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2015-07-07 21:10 [PATCH] Explicitly declare the role "base_r" Laurent Bigonville
2015-07-13 0:24 ` Paul Moore
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox
all inboxes | Powered by JetHome®