From: cpebenito@tresys.com (Christopher J. PeBenito) Date: Mon, 07 Jun 2010 09:20:42 -0400 Subject: [refpolicy] kernel_devices.patch In-Reply-To: <4C06BCD3.5020900@redhat.com> References: <4C06BCD3.5020900@redhat.com> Message-ID: <1275916842.809.90.camel@gorn.columbia.tresys.com> To: refpolicy@oss.tresys.com List-Id: refpolicy.oss.tresys.com On Wed, 2010-06-02 at 16:19 -0400, Daniel J Walsh wrote: > http://people.fedoraproject.org/~dwalsh/SELinux/F14/kernel_devices.patch > > vhost_device_t added for libvirt/qemu > > /dev/usbmon device added > > Added default label for /sys so libvirt could relabel to it. I don't understand this. There should be no files labeled sysfs_t, except for the entries created by the kernel on the fs itself, which get the right label already. > lots of new interfaces. Otherwise merged. -- Chris PeBenito Tresys Technology, LLC www.tresys.com | oss.tresys.com