summaryrefslogtreecommitdiff
path: root/src/net
diff options
context:
space:
mode:
authorDominick Grift <dominick.grift@defensec.nl>2024-11-04 05:52:25 +0100
committerDominick Grift <dominick.grift@defensec.nl>2024-11-04 06:26:42 +0100
commitc31f9de714589eb1946a5972ab105011816e2353 (patch)
tree2b2ed2e698b09f444f512736f9af617d8ca09a87 /src/net
parent489df53e4bdd8f03047a8c48b2fb8ccd8b51957e (diff)
downloadselinux-policy-c31f9de714589eb1946a5972ab105011816e2353.tar.gz
mls: support templates
Signed-off-by: Dominick Grift <dominick.grift@defensec.nl>
Diffstat (limited to 'src/net')
-rw-r--r--src/net/ibnet/endportibnet.cil2
-rw-r--r--src/net/ibnet/pkeyibnet.cil2
-rw-r--r--src/net/netifnet.cil4
-rw-r--r--src/net/nodenet.cil4
-rw-r--r--src/net/packetnet.cil2
-rw-r--r--src/net/peernet.cil4
-rw-r--r--src/net/portnet.cil4
-rw-r--r--src/net/spdnet.cil2
8 files changed, 12 insertions, 12 deletions
diff --git a/src/net/ibnet/endportibnet.cil b/src/net/ibnet/endportibnet.cil
index 32ff1a7..6510dab 100644
--- a/src/net/ibnet/endportibnet.cil
+++ b/src/net/ibnet/endportibnet.cil
@@ -43,7 +43,7 @@
(blockabstract base_template)
- (context endport_context (.sys.id .sys.role endport lowlevelrange))
+ (context endport_context (.sys.id .sys.role endport .sys.lowlow))
(type endport)
(call .net.ib.endport.type (endport)))
diff --git a/src/net/ibnet/pkeyibnet.cil b/src/net/ibnet/pkeyibnet.cil
index 83cbde3..235a432 100644
--- a/src/net/ibnet/pkeyibnet.cil
+++ b/src/net/ibnet/pkeyibnet.cil
@@ -43,7 +43,7 @@
(blockabstract base_template)
- (context pkey_context (.sys.id .sys.role pkey lowlevelrange))
+ (context pkey_context (.sys.id .sys.role pkey .sys.lowlow))
(type pkey)
(call .net.ib.pkey.type (pkey)))
diff --git a/src/net/netifnet.cil b/src/net/netifnet.cil
index 6a97ee3..03849df 100644
--- a/src/net/netifnet.cil
+++ b/src/net/netifnet.cil
@@ -1,7 +1,7 @@
;; SPDX-FileCopyrightText: © 2024 Dominick Grift <dominick.grift@defensec.nl>
;; SPDX-License-Identifier: Unlicense
-(sidcontext netif (sys.id sys.role net.netif lowlevelrange))
+(sidcontext netif (sys.id sys.role net.netif sys.lowlow))
(class netif (egress ingress))
(classorder (unordered netif))
@@ -62,7 +62,7 @@
(blockabstract base_template)
- (context netif_context (.sys.id .sys.role netif lowlevelrange))
+ (context netif_context (.sys.id .sys.role netif .sys.lowlow))
(type netif)
(call .net.netif.type (netif)))
diff --git a/src/net/nodenet.cil b/src/net/nodenet.cil
index e530aad..b15301e 100644
--- a/src/net/nodenet.cil
+++ b/src/net/nodenet.cil
@@ -1,7 +1,7 @@
;; SPDX-FileCopyrightText: © 2024 Dominick Grift <dominick.grift@defensec.nl>
;; SPDX-License-Identifier: Unlicense
-(sidcontext node (sys.id sys.role net.netnode lowlevelrange))
+(sidcontext node (sys.id sys.role net.netnode sys.lowlow))
(class node (recvfrom sendto))
(classorder (unordered node))
@@ -82,7 +82,7 @@
(blockabstract base_template)
- (context netnode_context (.sys.id .sys.role netnode lowlevelrange))
+ (context netnode_context (.sys.id .sys.role netnode .sys.lowlow))
(type netnode)
(call .net.netnode.type (netnode)))
diff --git a/src/net/packetnet.cil b/src/net/packetnet.cil
index 4ed4b3d..f31ee00 100644
--- a/src/net/packetnet.cil
+++ b/src/net/packetnet.cil
@@ -117,7 +117,7 @@
(blockabstract base_template)
- (context packet_context (.sys.id .sys.role packet lowlevelrange))
+ (context packet_context (.sys.id .sys.role packet .sys.lowlow))
(type packet)
(call .net.packet.type (packet)))
diff --git a/src/net/peernet.cil b/src/net/peernet.cil
index 743321c..51af170 100644
--- a/src/net/peernet.cil
+++ b/src/net/peernet.cil
@@ -1,7 +1,7 @@
;; SPDX-FileCopyrightText: © 2024 Dominick Grift <dominick.grift@defensec.nl>
;; SPDX-License-Identifier: Unlicense
-(sidcontext netmsg (sys.id sys.role net.peer lowlevelrange))
+(sidcontext netmsg (sys.id sys.role net.peer sys.lowlow))
(class peer (recv))
(classorder (unordered peer))
@@ -59,7 +59,7 @@
(blockabstract base_template)
- (context peer_context (.sys.id .sys.role peer lowlevelrange))
+ (context peer_context (.sys.id .sys.role peer .sys.lowlow))
(type peer)
(call .net.peer.type (peer)))
diff --git a/src/net/portnet.cil b/src/net/portnet.cil
index 544d062..7b989fa 100644
--- a/src/net/portnet.cil
+++ b/src/net/portnet.cil
@@ -1,7 +1,7 @@
;; SPDX-FileCopyrightText: © 2024 Dominick Grift <dominick.grift@defensec.nl>
;; SPDX-License-Identifier: Unlicense
-(sidcontext port (sys.id sys.role net.port lowlevelrange))
+(sidcontext port (sys.id sys.role net.port sys.lowlow))
(in net
@@ -53,7 +53,7 @@
(blockabstract base_template)
- (context port_context (.sys.id .sys.role port lowlevelrange))
+ (context port_context (.sys.id .sys.role port .sys.lowlow))
(type port)
(call .net.port.type (port)))
diff --git a/src/net/spdnet.cil b/src/net/spdnet.cil
index 76c8311..54f3949 100644
--- a/src/net/spdnet.cil
+++ b/src/net/spdnet.cil
@@ -74,7 +74,7 @@
(blockabstract base_template)
- (context spd_context (.sys.id .sys.role spd lowlevelrange))
+ (context spd_context (.sys.id .sys.role spd .sys.lowlow))
(type spd)
(call .net.spd.type (spd)))