]> asedeno.scripts.mit.edu Git - linux.git/commit
selinux: allow per-file labelling for binderfs
authorHridya Valsaraju <hridya@google.com>
Mon, 6 Jan 2020 18:13:29 +0000 (10:13 -0800)
committerPaul Moore <paul@paul-moore.com>
Tue, 7 Jan 2020 02:11:18 +0000 (21:11 -0500)
commit7a4b51947475a7f67e2bd06c4a4c768e2e64a975
tree07b41cf709869e76978020c22b57116debe01b80
parent7e78c875143b639dca887e335f7d045480ec28d8
selinux: allow per-file labelling for binderfs

This patch allows genfscon per-file labeling for binderfs.
This is required to have separate permissions to allow
access to binder, hwbinder and vndbinder devices which are
relocating to binderfs.

Acked-by: Jeff Vander Stoep <jeffv@google.com>
Acked-by: Mark Salyzyn <salyzyn@android.com>
Signed-off-by: Hridya Valsaraju <hridya@google.com>
Acked-by: Stephen Smalley <sds@tycho.nsa.gov>
Signed-off-by: Paul Moore <paul@paul-moore.com>
security/selinux/hooks.c