Research
.
Skip Search Box

SELinux Mailing List

Re: [ SEPOL ] Add sepol_policydb_mls_enabled, organize map file

From: Stephen Smalley <sds_at_tycho.nsa.gov>
Date: Tue, 15 Nov 2005 06:24:13 -0500


On Mon, 2005-11-14 at 17:04 -0500, Ivan Gyurdiev wrote:
> > Yes, I noticed that as well when I looked at this issue last week. Note
> > however that we don't need an expanded policy for this test; we can
> > simply check the MLS-enabled status of the base module. So possibly an
> > interface similar to sepol_module_package_info() could be added to
> > obtain the MLS-enabled status from the base module package, and then
> > that flag could be passed along to those parsers.
> >
> Ok, so what about this patch? Is it merged or rejected?
> I can write another one to query the mls field without reading the whole
> policy...

I didn't merge it because the new interface didn't seem to fit the need for libsemanage. I suppose I can separate out the module function and map file cleanups and apply them, verifying that the public symbols exported by the shared library don't change.

-- 
Stephen Smalley
National Security Agency


--
This message was distributed to subscribers of the selinux mailing list.
If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with
the words "unsubscribe selinux" without quotes as the message.
Received on Tue 15 Nov 2005 - 06:24:33 EST
 

Date Posted: Jan 15, 2009 | Last Modified: Jan 15, 2009 | Last Reviewed: Jan 15, 2009

 
bottom

National Security Agency / Central Security Service