aboutsummaryrefslogtreecommitdiffstats
path: root/security/root_plug.c
diff options
context:
space:
mode:
authorStephen Smalley <sds@tycho.nsa.gov>2008-05-21 14:16:12 -0400
committerJames Morris <jmorris@namei.org>2008-07-14 15:01:52 +1000
commitabc69bb633931bf54c6db798bcdc6fd1e0284742 (patch)
tree711aaf6c5e1d8bdd57138e8baf3a369ed832602d /security/root_plug.c
parentSecurity: split proc ptrace checking into read vs. attach (diff)
downloadlinux-dev-abc69bb633931bf54c6db798bcdc6fd1e0284742.tar.xz
linux-dev-abc69bb633931bf54c6db798bcdc6fd1e0284742.zip
SELinux: enable processes with mac_admin to get the raw inode contexts
Enable processes with CAP_MAC_ADMIN + mac_admin permission in policy to get undefined contexts on inodes. This extends the support for deferred mapping of security contexts in order to permit restorecon and similar programs to see the raw file contexts unknown to the system policy in order to check them. Signed-off-by: Stephen Smalley <sds@tycho.nsa.gov> Signed-off-by: James Morris <jmorris@namei.org>
Diffstat (limited to 'security/root_plug.c')
0 files changed, 0 insertions, 0 deletions