summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorChris PeBenito <cpebenito@tresys.com>2009-09-09 09:53:28 -0400
committerChris PeBenito <cpebenito@tresys.com>2009-09-09 09:53:28 -0400
commit6af53d08ed490b3f687af233f17c7df6a0a6aa26 (patch)
tree1d992ea2bb2cd40262df8af5f1d44be1c6f9a9ea
parentc1e5b195f7012c61f89f82dc96c15df52ff65316 (diff)
rearrange readahead rules.
-rw-r--r--policy/modules/admin/readahead.te11
1 files changed, 6 insertions, 5 deletions
diff --git a/policy/modules/admin/readahead.te b/policy/modules/admin/readahead.te
index 13238457..43398ed0 100644
--- a/policy/modules/admin/readahead.te
+++ b/policy/modules/admin/readahead.te
@@ -46,31 +46,32 @@ dev_getattr_all_blk_files(readahead_t)
dev_dontaudit_read_all_blk_files(readahead_t)
dev_dontaudit_getattr_memory_dev(readahead_t)
dev_dontaudit_getattr_nvram_dev(readahead_t)
-storage_raw_read_fixed_disk(readahead_t)
domain_use_interactive_fds(readahead_t)
domain_read_all_domains_state(readahead_t)
-files_dontaudit_getattr_all_sockets(readahead_t)
files_list_non_security(readahead_t)
files_read_non_security_files(readahead_t)
-files_dontaudit_getattr_non_security_blk_files(readahead_t)
files_create_boot_flag(readahead_t)
files_getattr_all_pipes(readahead_t)
+files_dontaudit_getattr_all_sockets(readahead_t)
+files_dontaudit_getattr_non_security_blk_files(readahead_t)
fs_getattr_all_fs(readahead_t)
fs_search_auto_mountpoints(readahead_t)
fs_getattr_all_pipes(readahead_t)
fs_getattr_all_files(readahead_t)
+fs_read_tmpfs_symlinks(readahead_t)
+fs_list_inotifyfs(readahead_t)
fs_dontaudit_search_ramfs(readahead_t)
fs_dontaudit_read_ramfs_pipes(readahead_t)
fs_dontaudit_read_ramfs_files(readahead_t)
fs_dontaudit_use_tmpfs_chr_dev(readahead_t)
-fs_read_tmpfs_symlinks(readahead_t)
-fs_list_inotifyfs(readahead_t)
mls_file_read_all_levels(readahead_t)
+storage_raw_read_fixed_disk(readahead_t)
+
term_dontaudit_use_console(readahead_t)
auth_dontaudit_read_shadow(readahead_t)