xsm: add CAT related policies
authorChao Peng <chao.p.peng@linux.intel.com>
Tue, 7 Jul 2015 13:47:53 +0000 (15:47 +0200)
committerJan Beulich <jbeulich@suse.com>
Tue, 7 Jul 2015 13:47:53 +0000 (15:47 +0200)
commit9a566a83d6374e7425bcb330e03c8ca9b31a0d0b
tree9e0c3507629c7c7ab5b50a8540ab7986538fb54d
parent4cbbe62a92434242c973cc56108d695ea6f053e7
xsm: add CAT related policies

Add xsm policies for Cache Allocation Technology(CAT) related hypercalls
to restrict the functions visibility to control domain only.

Signed-off-by: Chao Peng <chao.p.peng@linux.intel.com>
Acked-by: Daniel De Graaf <dgdegra@tycho.nsa.gov>
tools/flask/policy/policy/modules/xen/xen.if
tools/flask/policy/policy/modules/xen/xen.te
xen/xsm/flask/hooks.c
xen/xsm/flask/policy/access_vectors