From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from pigeon.gentoo.org ([208.92.234.80] helo=lists.gentoo.org) by finch.gentoo.org with esmtp (Exim 4.60) (envelope-from ) id 1QDLfZ-0007st-WD for garchives@archives.gentoo.org; Fri, 22 Apr 2011 19:05:34 +0000 Received: from pigeon.gentoo.org (localhost [127.0.0.1]) by pigeon.gentoo.org (Postfix) with SMTP id D9A5F1C0D6; Fri, 22 Apr 2011 19:05:25 +0000 (UTC) Received: from smtp.gentoo.org (smtp.gentoo.org [140.211.166.183]) by pigeon.gentoo.org (Postfix) with ESMTP id A8E441C0D6 for ; Fri, 22 Apr 2011 19:05:25 +0000 (UTC) Received: from pelican.gentoo.org (unknown [66.219.59.40]) (using TLSv1 with cipher ADH-CAMELLIA256-SHA (256/256 bits)) (No client certificate requested) by smtp.gentoo.org (Postfix) with ESMTPS id D026F1B4084 for ; Fri, 22 Apr 2011 19:05:24 +0000 (UTC) Received: from localhost.localdomain (localhost [127.0.0.1]) by pelican.gentoo.org (Postfix) with ESMTP id 336AF802C3 for ; Fri, 22 Apr 2011 19:05:24 +0000 (UTC) From: "Sven Vermeulen" To: gentoo-commits@lists.gentoo.org Content-type: text/plain; charset=UTF-8 Reply-To: gentoo-dev@lists.gentoo.org, "Sven Vermeulen" Message-ID: Subject: [gentoo-commits] proj/hardened-docs:master commit in: xml/selinux/ X-VCS-Repository: proj/hardened-docs X-VCS-Files: xml/selinux/hb-using-enforcing.xml xml/selinux/hb-using-permissive.xml X-VCS-Directories: xml/selinux/ X-VCS-Committer: SwifT X-VCS-Committer-Name: Sven Vermeulen X-VCS-Revision: a27c75bed3da2c64fccc5552c999c2224b6ae7c5 Date: Fri, 22 Apr 2011 19:05:24 +0000 (UTC) Precedence: bulk List-Post: List-Help: List-Unsubscribe: List-Subscribe: List-Id: Gentoo Linux mail X-BeenThere: gentoo-commits@lists.gentoo.org Content-Transfer-Encoding: quoted-printable X-Archives-Salt: X-Archives-Hash: cb0a7d3f9efc62872dc99ca7a44de8ab commit: a27c75bed3da2c64fccc5552c999c2224b6ae7c5 Author: Sven Vermeulen siphos be> AuthorDate: Fri Apr 22 19:05:20 2011 +0000 Commit: Sven Vermeulen siphos be> CommitDate: Fri Apr 22 19:05:20 2011 +0000 URL: http://git.overlays.gentoo.org/gitweb/?p=3Dproj/hardened-docs= .git;a=3Dcommit;h=3Da27c75be Updates on handbook --- xml/selinux/hb-using-enforcing.xml | 4 ++-- xml/selinux/hb-using-permissive.xml | 2 +- 2 files changed, 3 insertions(+), 3 deletions(-) diff --git a/xml/selinux/hb-using-enforcing.xml b/xml/selinux/hb-using-en= forcing.xml index 66e24a9..9f218cb 100644 --- a/xml/selinux/hb-using-enforcing.xml +++ b/xml/selinux/hb-using-enforcing.xml @@ -173,8 +173,8 @@ system as the intention was to ignore the output anyh= ow. =20

So how can we ensure that this rule doesn't fill up our AVC logs? Well, = we need -to create a module (like we have seen before and which we discuss in a l= ater -chapter again :-): +to create a module (like we have seen before in Creating Specific Allow Ru= les):

=20

diff --git a/xml/selinux/hb-using-permissive.xml b/xml/selinux/hb-using-p=
ermissive.xml
index f1007d5..a44251b 100644
--- a/xml/selinux/hb-using-permissive.xml
+++ b/xml/selinux/hb-using-permissive.xml
@@ -344,7 +344,7 @@ Modules.
=20
 
 
-
+
 Creating Specific Allow Rules
 
=20