summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorXin Ouyang <Xin.Ouyang@windriver.com>2012-11-26 18:43:22 +0800
committerXin Ouyang <Xin.Ouyang@windriver.com>2012-11-27 09:50:31 +0800
commit6c4f3a3a350618ab0080c4e28d418bf2dad8ab55 (patch)
tree1957c063f1598ce0c9e25492a011201993d23211
parent6974239e6015b6cb84e9625b870835626b1b02fe (diff)
downloadmeta-selinux-6c4f3a3a350618ab0080c4e28d418bf2dad8ab55.tar.gz
refpolicy: standard/mls policy should set UBAC=n
Signed-off-by: Xin Ouyang <Xin.Ouyang@windriver.com>
-rw-r--r--recipes-security/refpolicy/refpolicy-mls_2.20120725.bb3
-rw-r--r--recipes-security/refpolicy/refpolicy-standard_2.20120725.bb3
-rw-r--r--recipes-security/refpolicy/refpolicy_common.inc1
3 files changed, 5 insertions, 2 deletions
diff --git a/recipes-security/refpolicy/refpolicy-mls_2.20120725.bb b/recipes-security/refpolicy/refpolicy-mls_2.20120725.bb
index 77b7e0f..4d75322 100644
--- a/recipes-security/refpolicy/refpolicy-mls_2.20120725.bb
+++ b/recipes-security/refpolicy/refpolicy-mls_2.20120725.bb
@@ -5,11 +5,12 @@ It allows giving data labels such as \"Top Secret\" and preventing \
5such data from leaking to processes or files with lower classification. \ 5such data from leaking to processes or files with lower classification. \
6" 6"
7 7
8PR = "r2" 8PR = "r3"
9 9
10POLICY_NAME = "mls" 10POLICY_NAME = "mls"
11POLICY_TYPE = "mls" 11POLICY_TYPE = "mls"
12POLICY_DISTRO = "redhat" 12POLICY_DISTRO = "redhat"
13POLICY_UBAC = "n"
13POLICY_UNK_PERMS = "allow" 14POLICY_UNK_PERMS = "allow"
14POLICY_DIRECT_INITRC = "n" 15POLICY_DIRECT_INITRC = "n"
15POLICY_MONOLITHIC = "n" 16POLICY_MONOLITHIC = "n"
diff --git a/recipes-security/refpolicy/refpolicy-standard_2.20120725.bb b/recipes-security/refpolicy/refpolicy-standard_2.20120725.bb
index 25e94c6..1f3030a 100644
--- a/recipes-security/refpolicy/refpolicy-standard_2.20120725.bb
+++ b/recipes-security/refpolicy/refpolicy-standard_2.20120725.bb
@@ -3,11 +3,12 @@ DESCRIPTION = "\
3This is the reference policy for SELinux built with type enforcement \ 3This is the reference policy for SELinux built with type enforcement \
4only." 4only."
5 5
6PR = "r2" 6PR = "r3"
7 7
8POLICY_NAME = "standard" 8POLICY_NAME = "standard"
9POLICY_TYPE = "standard" 9POLICY_TYPE = "standard"
10POLICY_DISTRO = "redhat" 10POLICY_DISTRO = "redhat"
11POLICY_UBAC = "n"
11POLICY_UNK_PERMS = "allow" 12POLICY_UNK_PERMS = "allow"
12POLICY_DIRECT_INITRC = "n" 13POLICY_DIRECT_INITRC = "n"
13POLICY_MONOLITHIC = "n" 14POLICY_MONOLITHIC = "n"
diff --git a/recipes-security/refpolicy/refpolicy_common.inc b/recipes-security/refpolicy/refpolicy_common.inc
index f071f71..9c3d050 100644
--- a/recipes-security/refpolicy/refpolicy_common.inc
+++ b/recipes-security/refpolicy/refpolicy_common.inc
@@ -20,6 +20,7 @@ PARALLEL_MAKE = ""
20EXTRA_OEMAKE += "NAME=${POLICY_NAME} \ 20EXTRA_OEMAKE += "NAME=${POLICY_NAME} \
21 TYPE=${POLICY_TYPE} \ 21 TYPE=${POLICY_TYPE} \
22 DISTRO=${POLICY_DISTRO} \ 22 DISTRO=${POLICY_DISTRO} \
23 UBAC=${POLICY_UBAC} \
23 UNK_PERMS=${POLICY_UNK_PERMS} \ 24 UNK_PERMS=${POLICY_UNK_PERMS} \
24 DIRECT_INITRC=${POLICY_DIRECT_INITRC} \ 25 DIRECT_INITRC=${POLICY_DIRECT_INITRC} \
25 MONOLITHIC=${POLICY_MONOLITHIC} \ 26 MONOLITHIC=${POLICY_MONOLITHIC} \