selinux: apply selinux checks on new audit message types
authorEric Paris <eparis@redhat.com>
Fri, 24 May 2013 16:09:50 +0000 (12:09 -0400)
committerEric Paris <eparis@redhat.com>
Tue, 5 Nov 2013 16:07:35 +0000 (11:07 -0500)
commitb805b198dc74b73aabb6969a3db734c71c05c88c
tree7863f6b26836117ac4677554252376e3a8c014de
parentb0fed40214ce79ef70d97584ebdf13f89786da0e
selinux: apply selinux checks on new audit message types

We use the read check to get the feature set (like AUDIT_GET) and the
write check to set the features (like AUDIT_SET).

Signed-off-by: Eric Paris <eparis@redhat.com>
Signed-off-by: Richard Guy Briggs <rgb@redhat.com>
Signed-off-by: Eric Paris <eparis@redhat.com>
security/selinux/nlmsgtab.c