/usr/lib/cruft/explain/selinux-policy-default is in cruft-common 0.9.34.
This file is owned by root:root, with mode 0o755.
The actual contents of the file can be viewed below.
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 | #!/bin/sh
test -x /usr/sbin/semodule || exit 0
/usr/sbin/semodule --list-modules=full --store default | cut -f 1 -d\ | sort -u | while read priority
do
echo "/var/lib/selinux/default/active/modules/$priority"
done
/usr/sbin/semodule --list-modules=full --store default | while read -r line
do
priority=$(echo $line | cut -f1 -d\ )
module=$(echo $line | cut -f2 -d\ )
disabled=$(echo $line | grep 'disabled')
echo "/var/lib/selinux/default/active/modules/$priority/$module"
echo "/var/lib/selinux/default/active/modules/$priority/$module/hll"
echo "/var/lib/selinux/default/active/modules/$priority/$module/cil"
echo "/var/lib/selinux/default/active/modules/$priority/$module/lang_ext"
if [ -n "$disabled" ]
then
echo "/var/lib/selinux/default/active/modules/disabled/$module"
fi
done
|