[selinux-policy: 2274/3172] rearrange readahead rules.

Daniel J Walsh dwalsh at fedoraproject.org
Thu Oct 7 22:21:57 UTC 2010


commit 6af53d08ed490b3f687af233f17c7df6a0a6aa26
Author: Chris PeBenito <cpebenito at tresys.com>
Date:   Wed Sep 9 09:53:28 2009 -0400

    rearrange readahead rules.

 policy/modules/admin/readahead.te |   11 ++++++-----
 1 files changed, 6 insertions(+), 5 deletions(-)
---
diff --git a/policy/modules/admin/readahead.te b/policy/modules/admin/readahead.te
index 1323845..43398ed 100644
--- a/policy/modules/admin/readahead.te
+++ b/policy/modules/admin/readahead.te
@@ -46,31 +46,32 @@ dev_getattr_all_blk_files(readahead_t)
 dev_dontaudit_read_all_blk_files(readahead_t)
 dev_dontaudit_getattr_memory_dev(readahead_t)
 dev_dontaudit_getattr_nvram_dev(readahead_t)
-storage_raw_read_fixed_disk(readahead_t)
 
 domain_use_interactive_fds(readahead_t)
 domain_read_all_domains_state(readahead_t)
 
-files_dontaudit_getattr_all_sockets(readahead_t)
 files_list_non_security(readahead_t)
 files_read_non_security_files(readahead_t)
-files_dontaudit_getattr_non_security_blk_files(readahead_t)
 files_create_boot_flag(readahead_t)
 files_getattr_all_pipes(readahead_t)
+files_dontaudit_getattr_all_sockets(readahead_t)
+files_dontaudit_getattr_non_security_blk_files(readahead_t)
 
 fs_getattr_all_fs(readahead_t)
 fs_search_auto_mountpoints(readahead_t)
 fs_getattr_all_pipes(readahead_t)
 fs_getattr_all_files(readahead_t)
+fs_read_tmpfs_symlinks(readahead_t)
+fs_list_inotifyfs(readahead_t)
 fs_dontaudit_search_ramfs(readahead_t)
 fs_dontaudit_read_ramfs_pipes(readahead_t)
 fs_dontaudit_read_ramfs_files(readahead_t)
 fs_dontaudit_use_tmpfs_chr_dev(readahead_t)
-fs_read_tmpfs_symlinks(readahead_t)
-fs_list_inotifyfs(readahead_t)
 
 mls_file_read_all_levels(readahead_t)
 
+storage_raw_read_fixed_disk(readahead_t)
+
 term_dontaudit_use_console(readahead_t)
 
 auth_dontaudit_read_shadow(readahead_t)


More information about the scm-commits mailing list