All of lore.kernel.org
 help / color / mirror / Atom feed
* [refpolicy] [PATCH 0/3] Updated X object manager policy -v2: Intro
@ 2009-10-28  2:05 Eamon Walsh
  2009-10-28  2:18 ` [refpolicy] [PATCH 1/3] X Object Manager policy revisions to xserver.te Eamon Walsh
                   ` (3 more replies)
  0 siblings, 4 replies; 9+ messages in thread
From: Eamon Walsh @ 2009-10-28  2:05 UTC (permalink / raw)
  To: refpolicy

This patch series is an updated policy for the X server object manager.  
This is the policy that I was running in Portland for my various demos. 
It includes new x_pointer/x_keyboard classes, unconfined-by-default 
user types, and other changes.  The only thing missing here is updated 
mls constraints; I am still working on those.

The 3 patches here are NOT independent and breakage will probably 
result if only some of them are applied.  I only broke them up in an 
attempt to make it easier to review the changes.

This is also available in a git tree at 
git://anongit.freedesktop.org/~ewalsh/refpolicy (branch "master"), for 
ease of pulling.

Changes from -v1:

Dropped the x_keyboard/x_pointer object class patch (already pushed).

Dropped the patch making system_dbusd_t and consolekit_t unconfined.
This is so the focus is only on the changes to the xserver module.

No changes to the existing xserver_role and xserver_restricted_role
interfaces.  The existing UBAC-based controls have been restored.

Removed an apostrophe in a comment that was causing m4 errors.


-- 

Eamon Walsh 
National Security Agency

^ permalink raw reply	[flat|nested] 9+ messages in thread

end of thread, other threads:[~2009-11-02 13:45 UTC | newest]

Thread overview: 9+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2009-10-28  2:05 [refpolicy] [PATCH 0/3] Updated X object manager policy -v2: Intro Eamon Walsh
2009-10-28  2:18 ` [refpolicy] [PATCH 1/3] X Object Manager policy revisions to xserver.te Eamon Walsh
2009-10-28  2:19 ` [refpolicy] [PATCH 2/4] X Object Manager policy revisions to xserver.if Eamon Walsh
2009-10-28  2:20 ` [refpolicy] [PATCH 3/3] X Object manager policy revisions to x_contexts Eamon Walsh
2009-10-28 13:57 ` [refpolicy] [PATCH 0/3] Updated X object manager policy -v2: Intro Christopher J. PeBenito
2009-10-29 22:57   ` Eamon Walsh
2009-10-30 13:17     ` Christopher J. PeBenito
2009-10-30 22:24       ` Eamon Walsh
2009-11-02 13:45         ` Christopher J. PeBenito

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.