diff options
Diffstat (limited to 'src')
-rw-r--r-- | src/fs/noseclabelfs/resctrlnoseclabelfs.cil | 11 | ||||
-rw-r--r-- | src/fs/seclabelfs/xattrseclabelfs.cil | 1 | ||||
-rw-r--r-- | src/sys/sysfile/fssysfile/bcachefssysfile.cil | 9 |
3 files changed, 21 insertions, 0 deletions
diff --git a/src/fs/noseclabelfs/resctrlnoseclabelfs.cil b/src/fs/noseclabelfs/resctrlnoseclabelfs.cil new file mode 100644 index 0000000..a3f22a5 --- /dev/null +++ b/src/fs/noseclabelfs/resctrlnoseclabelfs.cil @@ -0,0 +1,11 @@ +;; SPDX-FileCopyrightText: © 2024 Dominick Grift <dominick.grift@defensec.nl> +;; SPDX-License-Identifier: Unlicense + +(block resctrl + + (filecon "/sys/fs/resctrl" dir ()) + (filecon "/sys/fs/resctrl/.*" any ()) + + (genfscon "resctrl" "/" fs_context) + + (blockinherit .noseclabelfs.template)) diff --git a/src/fs/seclabelfs/xattrseclabelfs.cil b/src/fs/seclabelfs/xattrseclabelfs.cil index bb78b76..a16bae9 100644 --- a/src/fs/seclabelfs/xattrseclabelfs.cil +++ b/src/fs/seclabelfs/xattrseclabelfs.cil @@ -3,6 +3,7 @@ (block xattr + (fsuse xattr "bcachefs" fs_context) (fsuse xattr "btrfs" fs_context) (fsuse xattr "ceph" fs_context) (fsuse xattr "encfs" fs_context) diff --git a/src/sys/sysfile/fssysfile/bcachefssysfile.cil b/src/sys/sysfile/fssysfile/bcachefssysfile.cil new file mode 100644 index 0000000..3b61867 --- /dev/null +++ b/src/sys/sysfile/fssysfile/bcachefssysfile.cil @@ -0,0 +1,9 @@ +;; SPDX-FileCopyrightText: © 2024 Dominick Grift <dominick.grift@defensec.nl> +;; SPDX-License-Identifier: Unlicense + +(block bcachefs + + (genfscon "sysfs" "/fs/bcachefs" sysfile_context) + + (blockinherit .sysfile.fs.template) + (blockinherit .sysfile.macro_template_dirs)) |