selinux/libsepol
Stephen Smalley 4a33c78ca5 libsepol: fix neverallow checking on attributes
Ole Kliemann reported that allow rules written using type attributes were
not being detected by neverallow assertions in the policy.  I think that
this was broken in policy.24 and later due to changes in the type datum.
Fix the expand logic to correctly distinguish type attributes from types.

Signed-off-by: Stephen Smalley <sds@tycho.nsa.gov>
Signed-off-by: Eric Paris <eparis@redhat.com>
2012-09-12 12:16:01 -04:00
..
include libsepol: reserve policycapability for redhat testing of ptrace child 2012-06-28 11:21:15 -04:00
man whole tree: default make target to all not install 2011-09-16 11:54:04 -04:00
src libsepol: fix neverallow checking on attributes 2012-09-12 12:16:01 -04:00
tests reactivate attribute mapping unit test 2010-03-24 13:55:23 -04:00
utils libsepol: Android/MacOS X build support 2012-06-28 11:21:15 -04:00
.gitignore Add subdirectory .gitignore files. 2009-10-20 21:25:55 -04:00
Android.mk libsepol: Android/MacOS X build support 2012-06-28 11:21:15 -04:00
ChangeLog Version bumps for upstream push 2012-06-28 14:02:29 -04:00
COPYING initial import from svn trunk revision 2950 2008-08-19 15:30:36 -04:00
Makefile initial import from svn trunk revision 2950 2008-08-19 15:30:36 -04:00
VERSION Version bumps for upstream push 2012-06-28 14:02:29 -04:00