selinux-policy/policy/modules
Eamon Walsh f267f85390 X Object Manager policy revisions to xserver.te.
X Object Manager policy revisions to xserver.te.

This commit consists of three main parts:

1. Code movement.  There were X object manager-related statements
   scattered somewhat throughout the file; these have been consolidated,
   which resulted in some other statements moving (e.g. iceauth_t).

2. Type changes.  Many of the specific event, extension, and property
   types have been dropped for the time being.  The rootwindow_t and
   remote_xclient_t types have been renamed, and a root_xcolormap_t
   type has been (re-)added.  This is for naming consistency.
   An "xserver_unprotected" alias has been added for use in labeling
   clients whose resources should be globally accessible (e.g. xdm_t).

3. Policy changes.  These are mostly related to devices, which now have
   separate x_keyboard and x_pointer classes.  The "Hacks" section
   has been cleaned up, and various other classes have had the default
   permissions tweaked.

Signed-off-by: Eamon Walsh <ewalsh@tycho.nsa.gov>
Signed-off-by: Chris PeBenito <cpebenito@tresys.com>
2009-10-28 10:03:22 -04:00
..
admin rearrange readahead rules. 2009-09-09 09:53:28 -04:00
apps reorganize a92ee50 2009-10-22 10:35:45 -04:00
kernel revise MCS constraints to use only MCS-specific attributes. 2009-10-07 11:48:14 -04:00
roles module version number bump for release 2.20090730 that was mistakenly omitted. 2009-08-05 10:59:21 -04:00
services X Object Manager policy revisions to xserver.te. 2009-10-28 10:03:22 -04:00
system add shorewall from dan. 2009-09-02 08:58:52 -04:00