Seems like we have a problem with current OpenSwan/IPSec stuff.
I believe that some of these are bugs in the implementation.
-------- Original Message --------
Subject: How should we handle polmatch avcs?
Date: Sat, 23 Sep 2006 06:59:30 -0400
From: Daniel J Walsh <[EMAIL PROTECTED]>
To: Stephen Smalley <[EMAIL PROTECTED]>, "Christopher J. PeBenito"
<[EMAIL PROTECTED]>
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=207304
allow initrc_t self:association polmatch;
allow unlabeled_t initrc_t:association polmatch;
allow unlabeled_t self:association polmatch;
--
redhat-lspp mailing list
[email protected]
https://www.redhat.com/mailman/listinfo/redhat-lspp