From: pebenito@ieee.org (Chris PeBenito) Date: Sat, 6 Aug 2016 15:56:47 -0400 Subject: [refpolicy] [PATCH] named reads vm sysctls In-Reply-To: <201608031539.37777.russell@coker.com.au> References: <20160731093700.5xs4jcqx4kymty76@athena.coker.com.au> <201608031539.37777.russell@coker.com.au> Message-ID: <818ed77b-8fa9-29d4-c48a-696bba656c9f@ieee.org> To: refpolicy@oss.tresys.com List-Id: refpolicy.oss.tresys.com On 08/03/16 01:39, Russell Coker wrote: > On Wed, 3 Aug 2016 09:43:18 AM Chris PeBenito wrote: >>> kernel_read_kernel_sysctls(named_t) >>> >>> +kernel_read_vm_sysctls(named_t) >>> >>> kernel_read_system_state(named_t) >>> kernel_read_network_state(named_t) >> >> Yes, there is a kernel_read_vm_overcommit_sysctl(). > > I've attached a new patch. Merged. -- Chris PeBenito