From: sven.vermeulen@siphos.be (Sven Vermeulen) Date: Fri, 19 Oct 2012 20:00:56 +0200 Subject: [refpolicy] [REVIEW REQUEST] Changes to the pulseaudio policy module and its dependencies In-Reply-To: <1350667422-9219-1-git-send-email-dominick.grift@gmail.com> References: <1350667422-9219-1-git-send-email-dominick.grift@gmail.com> Message-ID: <20121019180055.GA11667@siphos.be> To: refpolicy@oss.tresys.com List-Id: refpolicy.oss.tresys.com On Fri, Oct 19, 2012 at 07:23:42PM +0200, Dominick Grift wrote: > The pulseaudio_tmpfs_file_type is assigned to all clients tmpfile > file types separately with the pulseaudio_tmpfs_content() interface > > pulseaudio_clients atomatically get the access they need to pulseaudio > tmpfs content > > read and delete the content I have a similar construction with alsa. One thing I am hoping to look into soon is a "What if /dev/shm was shm_tmpfs_t instead of tmpfs_t", would that make sense? It would tighten the scope of such "wide" tmpfs file accesses. Wkr, Sven Vermeulen