All of lore.kernel.org
 help / color / mirror / Atom feed
* Trouble building a .cil policy from scratch.
@ 2015-07-22 22:21 Dan
  2015-07-23 11:42 ` Steve Lawrence
  0 siblings, 1 reply; 3+ messages in thread
From: Dan @ 2015-07-22 22:21 UTC (permalink / raw)
  To: selinux

Hey guys, I've been reading the documentation of CIL language and have 
been practicing writing policies from scratch and have come across a 
problem. Here is what I have so far(which is just a simple example):

(type myapp_t)
(role object_r)
(role staff_r)
(roletype object_r myapp_t)
(typeattribute domain)
(typeattributetypes domain (myapp_t))


(type myapp_exec_t)
(roletype object_r myapp_exec_t)
(typeattribute domain)
(typeattributetypes domain (myapp_exec_t))



Now I know I need other stuff to build this module completely like SID, 
access vectors, etc, but I'm stuck because it doesn't recognize the 
"typeattributetypes" statement. It just spits out the error as an 
unknown keyword which I don't know why I would because I'm pretty sure I 
used it right, but I'm still learning. Any info would be awesome. Thanks 
guys.

^ permalink raw reply	[flat|nested] 3+ messages in thread

end of thread, other threads:[~2015-07-23 18:27 UTC | newest]

Thread overview: 3+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2015-07-22 22:21 Trouble building a .cil policy from scratch Dan
2015-07-23 11:42 ` Steve Lawrence
2015-07-23 18:27   ` Dan

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.