From 1c2a744b479ab9abccac123580e0b7eef6282ee7 Mon Sep 17 00:00:00 2001 From: John Turner Date: Tue, 12 Aug 2025 15:06:13 -0400 Subject: move into bpfnoseclabelfs --- src/fs/noseclabelfs/bpfnoseclabelfs.cil | 9 ++++++--- src/misc.cil | 5 ----- 2 files changed, 6 insertions(+), 8 deletions(-) diff --git a/src/fs/noseclabelfs/bpfnoseclabelfs.cil b/src/fs/noseclabelfs/bpfnoseclabelfs.cil index d874ea5..6e855ff 100644 --- a/src/fs/noseclabelfs/bpfnoseclabelfs.cil +++ b/src/fs/noseclabelfs/bpfnoseclabelfs.cil @@ -3,6 +3,9 @@ (block bpf - (genfscon "bpf" "/" fs_context) - - (blockinherit .noseclabelfs.template)) + (filecon "/sys/fs/bpf" dir ()) + (filecon "/sys/fs/bpf/.*" any ()) + + (genfscon "bpf" "/" fs_context) + + (blockinherit .noseclabelfs.template)) diff --git a/src/misc.cil b/src/misc.cil index 5437318..7de0d50 100644 --- a/src/misc.cil +++ b/src/misc.cil @@ -3,11 +3,6 @@ (sidcontext init (sys.id sys.role sys.subj sys.lowlow)) ;; userspace_initial_context -(in bpf - - (filecon "/sys/fs/bpf" dir ()) - (filecon "/sys/fs/bpf/.*" any ())) - (in cache (filecon "/var/cache" dir file_context) -- cgit v1.2.3