diff --git a/refpolicy/policy/modules/admin/dmesg.if b/refpolicy/policy/modules/admin/dmesg.if index bc718b23..81fae637 100644 --- a/refpolicy/policy/modules/admin/dmesg.if +++ b/refpolicy/policy/modules/admin/dmesg.if @@ -1,5 +1,4 @@ # Copyright (C) 2005 Tresys Technology, LLC - ## ## Policy for dmesg. diff --git a/refpolicy/policy/modules/kernel/filesystem.if b/refpolicy/policy/modules/kernel/filesystem.if index cd671317..e4755293 100644 --- a/refpolicy/policy/modules/kernel/filesystem.if +++ b/refpolicy/policy/modules/kernel/filesystem.if @@ -1,4 +1,6 @@ # Copyright (C) 2005 Tresys Technology, LLC +## +## Policy for filesystems. ######################################## # @@ -1196,3 +1198,5 @@ class lnk_file getattr; class fifo_file getattr; class sock_file getattr; ') + +## diff --git a/refpolicy/policy/modules/kernel/kernel.if b/refpolicy/policy/modules/kernel/kernel.if index 2ce1ec2a..b2f056b5 100644 --- a/refpolicy/policy/modules/kernel/kernel.if +++ b/refpolicy/policy/modules/kernel/kernel.if @@ -1,4 +1,9 @@ # Copyright (C) 2005 Tresys Technology, LLC +## +## +## Policy for kernel threads, security interface (selinuxfs), +## proc filesystem, sysfs filesystem, and usb device filesystem. +## ######################################## # @@ -1319,3 +1324,5 @@ define(`kernel_read_directory_from_depend',` type kernel_t; class dir { getattr search read }; ') + +## diff --git a/refpolicy/policy/modules/system/clock.if b/refpolicy/policy/modules/system/clock.if index 73e32dd5..9a2644be 100644 --- a/refpolicy/policy/modules/system/clock.if +++ b/refpolicy/policy/modules/system/clock.if @@ -1,4 +1,6 @@ # Copyright (C) 2005 Tresys Technology, LLC +## +## Policy for reading and setting the hardware clock. ######################################## ## @@ -89,3 +91,5 @@ define(`clock_modify_drift_records_depend',` type adjtime_t; class file { getattr read write ioctl lock append }; ') + +## diff --git a/refpolicy/policy/modules/system/init.if b/refpolicy/policy/modules/system/init.if index 61e2c011..8fc9830e 100644 --- a/refpolicy/policy/modules/system/init.if +++ b/refpolicy/policy/modules/system/init.if @@ -1,4 +1,6 @@ # Copyright (C) 2005 Tresys Technology, LLC +## +## System initialization programs (init and init scripts). ######################################## # @@ -476,3 +478,5 @@ define(`init_script_ignore_modify_runtime_data_depend',` type initrc_var_run_t; class file { getattr read write append }; ') + +## diff --git a/refpolicy/policy/modules/system/iptables.if b/refpolicy/policy/modules/system/iptables.if index c0d6335e..4987c4c9 100644 --- a/refpolicy/policy/modules/system/iptables.if +++ b/refpolicy/policy/modules/system/iptables.if @@ -1,4 +1,6 @@ # Copyright (C) 2005 Tresys Technology, LLC +## +## Policy for iptables. ######################################## ## @@ -81,3 +83,5 @@ define(`iptables_execute_depend',` type iptables_t, iptables_exec_t; class file { getattr read execute execute_no_trans }; ') + +## diff --git a/refpolicy/policy/modules/system/logging.if b/refpolicy/policy/modules/system/logging.if index 0b4c0a53..b878ef2d 100644 --- a/refpolicy/policy/modules/system/logging.if +++ b/refpolicy/policy/modules/system/logging.if @@ -1,4 +1,6 @@ # Copyright (C) 2005 Tresys Technology, LLC +## +## Policy for the kernel message logger and system logging daemon. ####################################### # @@ -181,3 +183,5 @@ type var_log_t; class dir { getattr search read }; class file { getattr read write append }; ') + +## diff --git a/refpolicy/policy/modules/system/mount.if b/refpolicy/policy/modules/system/mount.if index 574bf39d..ff64c262 100644 --- a/refpolicy/policy/modules/system/mount.if +++ b/refpolicy/policy/modules/system/mount.if @@ -1,4 +1,6 @@ # Copyright (C) 2005 Tresys Technology, LLC +## +## Policy for mount. ######################################## ## @@ -89,3 +91,5 @@ define(`mount_send_nfs_client_request_depend',` type mount_t; class udp_socket { ioctl read getattr write setattr append bind connect getopt setopt shutdown }; ') + +## diff --git a/refpolicy/policy/modules/system/sysnetwork.if b/refpolicy/policy/modules/system/sysnetwork.if index 0de49c3f..cc64939e 100644 --- a/refpolicy/policy/modules/system/sysnetwork.if +++ b/refpolicy/policy/modules/system/sysnetwork.if @@ -1,4 +1,6 @@ # Copyright (C) 2005 Tresys Technology, LLC +## +## Policy for network configuration: ifconfig and dhcp client. ######################################## # @@ -100,3 +102,5 @@ define(`sysnetwork_read_network_config_depend',` type net_conf_t; class file { getattr read }; ') + +##