RFE: log the policy capability state when a new policy is loaded into the kernel
pcmoore opened this issue · 1 comments
pcmoore commented
We should record if the known policy capabilities are enabled/disabled by the newly loaded SELinux policy. We may also want to record any unknown policy capabilities for informative purposes.
stephensmalley commented
Resolved by 21d34af