secilc: Add documentation/examples for allowx, auditallowx, dontauditx, and permissionx

Also removes *bounds statements in policy.cil, which had bounds
violations and are better tested in other test files.

Signed-off-by: Steve Lawrence <slawrence@tresys.com>
Acked-by: James Carter <jwcart2@tycho.nsa.gov>
4 files changed