From 32b5cf0b7b901e5b4be248fa8d494736883a7dc5 Mon Sep 17 00:00:00 2001 From: John Turner Date: Sat, 23 Aug 2025 20:17:25 -0400 Subject: move "devtmp" out of misc.cil --- src/fs/seclabelfs/devtmpseclabelfs.cil | 5 +++-- src/misc.cil | 4 ---- 2 files changed, 3 insertions(+), 6 deletions(-) (limited to 'src') diff --git a/src/fs/seclabelfs/devtmpseclabelfs.cil b/src/fs/seclabelfs/devtmpseclabelfs.cil index fdfc120..3e33b79 100644 --- a/src/fs/seclabelfs/devtmpseclabelfs.cil +++ b/src/fs/seclabelfs/devtmpseclabelfs.cil @@ -2,7 +2,6 @@ ;; SPDX-License-Identifier: Unlicense (block devtmp - (fsuse trans "devtmpfs" fs_context) (blockinherit .fs.macro_template_all_files) @@ -13,4 +12,6 @@ (blockinherit .fs.macro_template_files) (blockinherit .fs.macro_template_lnk_files) (blockinherit .fs.macro_template_sock_files) - (blockinherit .seclabelfs.template)) + (blockinherit .seclabelfs.template) + + (allow fs self (filesystem (associate)))) diff --git a/src/misc.cil b/src/misc.cil index 03eb36e..fc8301f 100644 --- a/src/misc.cil +++ b/src/misc.cil @@ -3,10 +3,6 @@ (sidcontext init (sys.id sys.role sys.subj sys.lowlow)) ;; userspace_initial_context -(in devtmp - - (allow fs self (filesystem (associate)))) - (in dos (filecon "/boot/efi" dir fs_context) -- cgit v1.2.3