-
- Downloads
Replace "neverallow domain" by "neverallow *"
Modify many "neverallow domain" rules to be "neverallow *" rules instead. This will catch more SELinux policy bugs where a label is assigned an irrelevant rule, as well as catch situations where a domain attribute is not assigned to a process. Change-Id: I5b83a2504c13b384f9dff616a70ca733b648ccdf
Showing
- blkid.te 1 addition, 1 deletionblkid.te
- blkid_untrusted.te 1 addition, 1 deletionblkid_untrusted.te
- domain.te 20 additions, 20 deletionsdomain.te
- fsck.te 1 addition, 1 deletionfsck.te
- fsck_untrusted.te 1 addition, 1 deletionfsck_untrusted.te
- kernel.te 1 addition, 1 deletionkernel.te
- keystore.te 1 addition, 1 deletionkeystore.te
- lmkd.te 1 addition, 1 deletionlmkd.te
- sgdisk.te 1 addition, 1 deletionsgdisk.te
- toolbox.te 1 addition, 1 deletiontoolbox.te
Loading
Please register or sign in to comment