On 04/03/2014 03:01 AM, William Brown wrote:
Hi,

I'm submitting a package for tayga to fedora. I would like the SELinux
policy attached to this reviewed.

https://bugzilla.redhat.com/show_bug.cgi?id=1028206

Policy attached. It has comments around parts I have queries and
concerns about.

Note that tayga will attempt to call /usr/sbin/ip, which is why the cmd
transitions are in the policy. 



--
selinux mailing list
selinux@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/selinux
There is no need to have own private type for /etc/tayga if it is read-only.

Is net_admin caused by tayga? I believe it is caused by ifconfig.

Is there a unit file?

I attached reviewed policy files.