flask/policy: rework policy build system
authorDaniel De Graaf <dgdegra@tycho.nsa.gov>
Wed, 13 Feb 2013 16:07:05 +0000 (16:07 +0000)
committerIan Jackson <Ian.Jackson@eu.citrix.com>
Fri, 22 Feb 2013 17:15:39 +0000 (17:15 +0000)
commit2393441e5808b5ac4d76510560b3200c91f67409
tree6e3ba4f657bfedc18a7c21776f6784e4a25b3150
parent5721a6a4062ba67d8302251efebd23f3a4059f05
flask/policy: rework policy build system

This adds the ability to define security classes and access vectors in
FLASK policy not defined by the hypervisor, for the use of stub domains
or applications without their own security policies.

Signed-off-by: Daniel De Graaf <dgdegra@tycho.nsa.gov>
tools/flask/policy/Makefile
tools/flask/policy/policy/access_vectors [new file with mode: 0644]
tools/flask/policy/policy/global_booleans [deleted file]
tools/flask/policy/policy/global_tunables
tools/flask/policy/policy/initial_sids
tools/flask/policy/policy/security_classes [new file with mode: 0644]