platform_system_sepolicy/private/compat
Maciej Żenczykowski d68cb48e90 apply 'fs_bpf_tethering' label to /sys/fs/bpf/tethering
We want to label /sys/fs/bpf/tethering/... with a new label distinct
from /sys/fs/bpf, as this will allow locking down the programs/maps
tighter then is currently possible with the existing system.

These programs and maps are provided via the tethering mainline module,
and as such their number, names, key/value types, etc. are all prone to
be changed by a tethering mainline module update.

Test: atest, TreeHugger
Signed-off-by: Maciej Żenczykowski <maze@google.com>
Change-Id: Ifc4108d76a1106a936b941a3dda1abc5a65c05b0
2021-02-11 17:45:06 -08:00
..
26.0 Exempt older vendor images from recent mls changes. 2020-11-17 17:30:10 +00:00
27.0 Exempt older vendor images from recent mls changes. 2020-11-17 17:30:10 +00:00
28.0 Exempt older vendor images from recent mls changes. 2020-11-17 17:30:10 +00:00
29.0 Add vendor_public_framework_file type to SEPolicy 2021-01-26 15:59:37 +01:00
30.0 apply 'fs_bpf_tethering' label to /sys/fs/bpf/tethering 2021-02-11 17:45:06 -08:00