Message ID | 20230818181905.560882-1-dominick.grift@defensec.nl (mailing list archive) |
---|---|
State | Accepted |
Commit | e533a4561258 |
Delegated to: | Petr Lautrbach |
Headers | show |
Series | secilc/docs: fixes filecon example | expand |
Dominick Grift <dominick.grift@defensec.nl> writes: > Signed-off-by: Dominick Grift <dominick.grift@defensec.nl> Acked-by: Petr Lautrbach <lautrbach@redhat.com> > --- > secilc/docs/cil_file_labeling_statements.md | 2 +- > 1 file changed, 1 insertion(+), 1 deletion(-) > > diff --git a/secilc/docs/cil_file_labeling_statements.md b/secilc/docs/cil_file_labeling_statements.md > index 73f73885..9e4e877d 100644 > --- a/secilc/docs/cil_file_labeling_statements.md > +++ b/secilc/docs/cil_file_labeling_statements.md > @@ -97,7 +97,7 @@ These examples use one named, one anonymous and one empty context definition: > (context runas_exec_context (u object_r exec low_low)) > > (filecon "/system/bin/run-as" file runas_exec_context) > - (filecon "/dev/socket/wpa_wlan[0-9]" any u:object_r:wpa.socket:s0-s0) > + (filecon "/dev/socket/wpa_wlan[0-9]" any (u object_r wpa.socket ((s0)(s0)))) > (filecon "/data/local/mine" dir ()) > ``` > > -- > 2.40.1
On Tue, Oct 31, 2023 at 2:23 PM Petr Lautrbach <plautrba@redhat.com> wrote: > > Dominick Grift <dominick.grift@defensec.nl> writes: > > > Signed-off-by: Dominick Grift <dominick.grift@defensec.nl> > > Acked-by: Petr Lautrbach <lautrbach@redhat.com> > > Merged. Thanks, Jim > > > --- > > secilc/docs/cil_file_labeling_statements.md | 2 +- > > 1 file changed, 1 insertion(+), 1 deletion(-) > > > > diff --git a/secilc/docs/cil_file_labeling_statements.md b/secilc/docs/cil_file_labeling_statements.md > > index 73f73885..9e4e877d 100644 > > --- a/secilc/docs/cil_file_labeling_statements.md > > +++ b/secilc/docs/cil_file_labeling_statements.md > > @@ -97,7 +97,7 @@ These examples use one named, one anonymous and one empty context definition: > > (context runas_exec_context (u object_r exec low_low)) > > > > (filecon "/system/bin/run-as" file runas_exec_context) > > - (filecon "/dev/socket/wpa_wlan[0-9]" any u:object_r:wpa.socket:s0-s0) > > + (filecon "/dev/socket/wpa_wlan[0-9]" any (u object_r wpa.socket ((s0)(s0)))) > > (filecon "/data/local/mine" dir ()) > > ``` > > > > -- > > 2.40.1 >
diff --git a/secilc/docs/cil_file_labeling_statements.md b/secilc/docs/cil_file_labeling_statements.md index 73f73885..9e4e877d 100644 --- a/secilc/docs/cil_file_labeling_statements.md +++ b/secilc/docs/cil_file_labeling_statements.md @@ -97,7 +97,7 @@ These examples use one named, one anonymous and one empty context definition: (context runas_exec_context (u object_r exec low_low)) (filecon "/system/bin/run-as" file runas_exec_context) - (filecon "/dev/socket/wpa_wlan[0-9]" any u:object_r:wpa.socket:s0-s0) + (filecon "/dev/socket/wpa_wlan[0-9]" any (u object_r wpa.socket ((s0)(s0)))) (filecon "/data/local/mine" dir ()) ```
Signed-off-by: Dominick Grift <dominick.grift@defensec.nl> --- secilc/docs/cil_file_labeling_statements.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-)