Lines Matching refs:mac_admin
624 mac_admin # unused by SELinux
5089 # Only recovery needs mac_admin to set contexts not defined in current policy.
5090 neverallow { domain -recovery } self:capability2 mac_admin;
7596 allow recovery self:capability2 mac_admin;
9120 allow unconfineddomain self:capability2 ~{ mac_override mac_admin };