All of lore.kernel.org
 help / color / mirror / Atom feed
* [refpolicy] services_ntp.patch
@ 2008-09-24 20:14 Daniel J Walsh
  2008-10-08 15:53 ` Christopher J. PeBenito
  0 siblings, 1 reply; 6+ messages in thread
From: Daniel J Walsh @ 2008-09-24 20:14 UTC (permalink / raw)
  To: refpolicy

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

http://people.fedoraproject.org/~dwalsh/SELinux/F10/services_ntp.patch

Add initrc script support

allow admin to start/stop service

Admin needs admin_pattern on all file types

ntpd uses shm for communicating with time devices

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)
Comment: Using GnuPG with Fedora - http://enigmail.mozdev.org

iEYEARECAAYFAkjan6QACgkQrlYvE4MpobPkRQCg2PO8xsmqgdsAYG4yFzLhD5sI
AWMAoODvSLlO6HuLTQqdWdBSxL5RiKaa
=6vvy
-----END PGP SIGNATURE-----

^ permalink raw reply	[flat|nested] 6+ messages in thread

* [refpolicy] services_ntp.patch
  2008-09-24 20:14 [refpolicy] services_ntp.patch Daniel J Walsh
@ 2008-10-08 15:53 ` Christopher J. PeBenito
  0 siblings, 0 replies; 6+ messages in thread
From: Christopher J. PeBenito @ 2008-10-08 15:53 UTC (permalink / raw)
  To: refpolicy

On Wed, 2008-09-24 at 16:14 -0400, Daniel J Walsh wrote:
> http://people.fedoraproject.org/~dwalsh/SELinux/F10/services_ntp.patch
> 
> Add initrc script support
> 
> allow admin to start/stop service
> 
> Admin needs admin_pattern on all file types
> 
> ntpd uses shm for communicating with time devices

Merged except for the tmpfs part; waiting to hear if ntp_tmpfs_t works.

-- 
Chris PeBenito
Tresys Technology, LLC
(410) 290-1411 x150

^ permalink raw reply	[flat|nested] 6+ messages in thread

* [refpolicy] services_ntp.patch
@ 2009-03-05 16:45 Daniel J Walsh
  0 siblings, 0 replies; 6+ messages in thread
From: Daniel J Walsh @ 2009-03-05 16:45 UTC (permalink / raw)
  To: refpolicy

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

http://people.fedoraproject.org/~dwalsh/SELinux/F11/services_ntp.patch

Reads lnk files on key, reads inotify

uses shm to communicate with gps devices

Wants ipc_owner

Allow other domains (dhpc_t) to run ntp
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)
Comment: Using GnuPG with Fedora - http://enigmail.mozdev.org

iEYEARECAAYFAkmwAZEACgkQrlYvE4MpobPgzgCfW2zsuRFoIUrbTh2MHyzE9duJ
J2wAnRbwi6ZZg8/LdqIvVRUldX5c+tux
=olTg
-----END PGP SIGNATURE-----

^ permalink raw reply	[flat|nested] 6+ messages in thread

* [refpolicy] services_ntp.patch
@ 2009-11-12 21:46 Daniel J Walsh
  2010-01-07 14:01 ` Christopher J. PeBenito
  0 siblings, 1 reply; 6+ messages in thread
From: Daniel J Walsh @ 2009-11-12 21:46 UTC (permalink / raw)
  To: refpolicy

http://people.fedoraproject.org/~dwalsh/SELinux/F12/services_ntp.patch

New interfaces

needs ipc_owner

Creates shm to talk to other processes

communicates with gpsd

^ permalink raw reply	[flat|nested] 6+ messages in thread

* [refpolicy] services_ntp.patch
  2009-11-12 21:46 Daniel J Walsh
@ 2010-01-07 14:01 ` Christopher J. PeBenito
  0 siblings, 0 replies; 6+ messages in thread
From: Christopher J. PeBenito @ 2010-01-07 14:01 UTC (permalink / raw)
  To: refpolicy

On Thu, 2009-11-12 at 16:46 -0500, Daniel J Walsh wrote:
> http://people.fedoraproject.org/~dwalsh/SELinux/F12/services_ntp.patch
> 
> New interfaces
> 
> needs ipc_owner
> 
> Creates shm to talk to other processes
> 
> communicates with gpsd

@@ -129,6 +134,7 @@
 
 optional_policy(`
 	gpsd_rw_shm(ntpd_t)
+	gpsd_rw_tmpfs_files(ntpd_t)
 ')

This is not necessary, as the rules are already in gpsd_rw_shm().
Otherwise merged.
 

-- 
Chris PeBenito
Tresys Technology, LLC
(410) 290-1411 x150

^ permalink raw reply	[flat|nested] 6+ messages in thread

* [refpolicy] services_ntp.patch
@ 2010-08-26 22:01 Daniel J Walsh
  0 siblings, 0 replies; 6+ messages in thread
From: Daniel J Walsh @ 2010-08-26 22:01 UTC (permalink / raw)
  To: refpolicy

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

http://people.fedoraproject.org/~dwalsh/SELinux/F14/services_ntp.patch
ntpd uses real time clock

Has to talk to generic tmpfs for clocks that we dont have policy for
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.16 (GNU/Linux)
Comment: Using GnuPG with Fedora - http://enigmail.mozdev.org/

iEYEARECAAYFAkx25DwACgkQrlYvE4MpobOewwCfWnkhWPZFXOr3JnZgxF4WhLb/
dWYAoI9KBLrTALpQqnt1ecQimjppwFyd
=XGq+
-----END PGP SIGNATURE-----

^ permalink raw reply	[flat|nested] 6+ messages in thread

end of thread, other threads:[~2010-08-26 22:01 UTC | newest]

Thread overview: 6+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2008-09-24 20:14 [refpolicy] services_ntp.patch Daniel J Walsh
2008-10-08 15:53 ` Christopher J. PeBenito
  -- strict thread matches above, loose matches on Subject: below --
2009-03-05 16:45 Daniel J Walsh
2009-11-12 21:46 Daniel J Walsh
2010-01-07 14:01 ` Christopher J. PeBenito
2010-08-26 22:01 Daniel J Walsh

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.