On 07/29/2015 09:05 AM, Nick Kralevich wrote:
> On Wed, Jul 29, 2015 at 5:35 AM, Stephen Smalley <[email protected]> wrote:
>>
>> Jeff said you can ignore this one, but if you had to allow one like it,
>> you could write an allow rule along the lines of:
>> allow untrusted_app self:udp_socket 0x8927;
>>
> 
> To avoid any confusion: The omission of 0x8927 (SIOCGIFHWADDR) from
> untrusted_app was intentional. Please don't add it back.

Has anyone starting implementing neverallow support for ioctl commands
yet?  I would think it wouldn't be too hard to add.

_______________________________________________
Seandroid-list mailing list
[email protected]
To unsubscribe, send email to [email protected].
To get help, send an email containing "help" to 
[email protected].

Reply via email to