Skip to content
Commit 44141f58 authored by bauen1's avatar bauen1 Committed by Paul Moore
Browse files

selinux: allow dontauditx and auditallowx rules to take effect without allowx



This allows for dontauditing very specific ioctls e.g. TCGETS without
dontauditing every ioctl or granting additional permissions.

Now either an allowx, dontauditx or auditallowx rules enables checking
for extended permissions.

Signed-off-by: default avatarJonathan Hettwer <j2468h@gmail.com>
Signed-off-by: default avatarPaul Moore <paul@paul-moore.com>
parent 83370b31
Loading
Loading
Loading
Loading
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Please register or to comment