diff --git a/refpolicy/support/gennetfilter.py b/refpolicy/support/gennetfilter.py index 6d20280..1d1c652 100644 --- a/refpolicy/support/gennetfilter.py +++ b/refpolicy/support/gennetfilter.py @@ -112,10 +112,10 @@ def write_netfilter_config(packets,mls,mcs): print ":FORWARD ACCEPT [0:0]" print ":OUTPUT ACCEPT [0:0]" print ":POSTROUTING ACCEPT [0:0]" - print ":selinux_input [0:0]" - print ":selinux_output [0:0]" - print ":selinux_new_input [0:0]" - print ":selinux_new_output [0:0]" + print ":selinux_input - [0:0]" + print ":selinux_output - [0:0]" + print ":selinux_new_input - [0:0]" + print ":selinux_new_output - [0:0]" print "-A INPUT -j selinux_input" print "-A OUTPUT -j selinux_output" print "-A selinux_input -m state --state NEW -j selinux_new_input"