diff options
author | Chris PeBenito <cpebenito@tresys.com> | 2014-06-19 10:48:38 -0400 |
---|---|---|
committer | Sven Vermeulen <sven.vermeulen@siphos.be> | 2014-06-25 20:59:13 +0200 |
commit | fbd16c79b07f6bc3fa4b7555d395d9eb8f2d0514 (patch) | |
tree | 02447064a34205860865036927882dfe934d8dbb /Rules.monolithic | |
parent | Module version bump for unconfined syslog cap from Nicolas Iooss. (diff) | |
download | hardened-refpolicy-fbd16c79b07f6bc3fa4b7555d395d9eb8f2d0514.tar.gz hardened-refpolicy-fbd16c79b07f6bc3fa4b7555d395d9eb8f2d0514.tar.bz2 hardened-refpolicy-fbd16c79b07f6bc3fa4b7555d395d9eb8f2d0514.zip |
Always use the unknown permissions handling build option.
This compile-time feature is in the minimum-required checkpolicy/checkmodule
for building the policy, so it should always be used.
Diffstat (limited to 'Rules.monolithic')
-rw-r--r-- | Rules.monolithic | 10 |
1 files changed, 2 insertions, 8 deletions
diff --git a/Rules.monolithic b/Rules.monolithic index b8d180e14..6505550d0 100644 --- a/Rules.monolithic +++ b/Rules.monolithic @@ -63,9 +63,6 @@ resetlabels: $(fcpath) # # Build a binary policy locally # -ifneq "$(UNK_PERMS)" "" -$(polver): CHECKPOLICY += -U $(UNK_PERMS) -endif $(polver): $(policy_conf) @echo "Compiling $(NAME) $(polver)" ifneq ($(pv),$(kv)) @@ -73,15 +70,12 @@ ifneq ($(pv),$(kv)) @echo "WARNING: Policy version mismatch! Is your OUTPUT_POLICY set correctly?" @echo endif - $(verbose) $(CHECKPOLICY) $^ -o $@ + $(verbose) $(CHECKPOLICY) -U $(UNK_PERMS) $^ -o $@ ######################################## # # Install a binary policy # -ifneq "$(UNK_PERMS)" "" -$(loadpath): CHECKPOLICY += -U $(UNK_PERMS) -endif $(loadpath): $(policy_conf) @echo "Compiling and installing $(NAME) $(loadpath)" ifneq ($(pv),$(kv)) @@ -90,7 +84,7 @@ ifneq ($(pv),$(kv)) @echo endif @$(INSTALL) -d -m 0755 $(@D) - $(verbose) $(CHECKPOLICY) $^ -o $@ + $(verbose) $(CHECKPOLICY) -U $(UNK_PERMS) $^ -o $@ ######################################## # |