diff options
author | Chris PeBenito <cpebenito@tresys.com> | 2009-09-09 09:53:28 -0400 |
---|---|---|
committer | Chris PeBenito <cpebenito@tresys.com> | 2009-09-09 09:53:28 -0400 |
commit | 6af53d08ed490b3f687af233f17c7df6a0a6aa26 (patch) | |
tree | 1d992ea2bb2cd40262df8af5f1d44be1c6f9a9ea | |
parent | c1e5b195f7012c61f89f82dc96c15df52ff65316 (diff) |
rearrange readahead rules.
-rw-r--r-- | policy/modules/admin/readahead.te | 11 |
1 files changed, 6 insertions, 5 deletions
diff --git a/policy/modules/admin/readahead.te b/policy/modules/admin/readahead.te index 13238457..43398ed0 100644 --- a/policy/modules/admin/readahead.te +++ b/policy/modules/admin/readahead.te @@ -46,31 +46,32 @@ dev_getattr_all_blk_files(readahead_t) dev_dontaudit_read_all_blk_files(readahead_t) dev_dontaudit_getattr_memory_dev(readahead_t) dev_dontaudit_getattr_nvram_dev(readahead_t) -storage_raw_read_fixed_disk(readahead_t) domain_use_interactive_fds(readahead_t) domain_read_all_domains_state(readahead_t) -files_dontaudit_getattr_all_sockets(readahead_t) files_list_non_security(readahead_t) files_read_non_security_files(readahead_t) -files_dontaudit_getattr_non_security_blk_files(readahead_t) files_create_boot_flag(readahead_t) files_getattr_all_pipes(readahead_t) +files_dontaudit_getattr_all_sockets(readahead_t) +files_dontaudit_getattr_non_security_blk_files(readahead_t) fs_getattr_all_fs(readahead_t) fs_search_auto_mountpoints(readahead_t) fs_getattr_all_pipes(readahead_t) fs_getattr_all_files(readahead_t) +fs_read_tmpfs_symlinks(readahead_t) +fs_list_inotifyfs(readahead_t) fs_dontaudit_search_ramfs(readahead_t) fs_dontaudit_read_ramfs_pipes(readahead_t) fs_dontaudit_read_ramfs_files(readahead_t) fs_dontaudit_use_tmpfs_chr_dev(readahead_t) -fs_read_tmpfs_symlinks(readahead_t) -fs_list_inotifyfs(readahead_t) mls_file_read_all_levels(readahead_t) +storage_raw_read_fixed_disk(readahead_t) + term_dontaudit_use_console(readahead_t) auth_dontaudit_read_shadow(readahead_t) |