From b675cec7f8bb358a66a175e0e73bb71d170093a9 Mon Sep 17 00:00:00 2001 From: Chris PeBenito Date: Wed, 3 Mar 2010 14:16:22 -0500 Subject: [PATCH] Improve documentation of seutil_sigchld_newrole(). --- policy/modules/system/selinuxutil.if | 10 ++++++++++ 1 file changed, 10 insertions(+) diff --git a/policy/modules/system/selinuxutil.if b/policy/modules/system/selinuxutil.if index d01cffc6..d37974cc 100644 --- a/policy/modules/system/selinuxutil.if +++ b/policy/modules/system/selinuxutil.if @@ -244,11 +244,21 @@ interface(`seutil_dontaudit_signal_newrole',` ## ## Send a SIGCHLD signal to newrole. ## +## +##

+## Allow the specified domain to send a SIGCHLD +## signal to newrole. This signal is automatically +## sent from a process that is terminating to +## its parent. This may be needed by domains +## that are executed from newrole. +##

+##
## ## ## Domain allowed access. ## ## +## # interface(`seutil_sigchld_newrole',` gen_require(`