selinux-policy/policy/modules
Chris PeBenito 996779dfad trunk:
The attached patch allows unprivileged clients to export from or import
to the largeobject owned by themselves.

The current security policy does not allow them to import/export any
largeobjects without any clear reason.

NOTE: Export of the largeobject means that it dumps whole of the
largeobject into a local file, so SE-PostgreSQL checks both of
db_blob:{read export} on the largeobject and file:{write} on the
local file. Import is a reversal behavior.

KaiGai Kohei
2009-05-22 13:37:32 +00:00
..
admin trunk: 5 patches from dan. 2009-04-07 14:09:43 +00:00
apps trunk: 4 patches from dan. 2009-03-11 13:32:23 +00:00
kernel trunk: 4 patches from dan. 2009-05-14 14:41:50 +00:00
roles trunk: 5 patches from dan. 2009-04-07 14:09:43 +00:00
services trunk: 2009-05-22 13:37:32 +00:00
system trunk: whitespace fixes. 2009-05-06 14:44:57 +00:00