[selinux-policy: 966/3172] remove extra rule

Daniel J Walsh dwalsh at fedoraproject.org
Thu Oct 7 20:28:29 UTC 2010


commit 0d5d74e02bb294a4daa40e0ad05c3719079d2eef
Author: Chris PeBenito <cpebenito at tresys.com>
Date:   Mon Nov 14 19:33:09 2005 +0000

    remove extra rule

 refpolicy/policy/modules/system/domain.if |    1 -
 1 files changed, 0 insertions(+), 1 deletions(-)
---
diff --git a/refpolicy/policy/modules/system/domain.if b/refpolicy/policy/modules/system/domain.if
index 5087953..ffb5e26 100644
--- a/refpolicy/policy/modules/system/domain.if
+++ b/refpolicy/policy/modules/system/domain.if
@@ -545,7 +545,6 @@ interface(`domain_read_confined_domains_state',`
 	allow $1 { domain -unconfined_domain }:dir r_dir_perms;
 	allow $1 { domain -unconfined_domain }:lnk_file r_file_perms;
 	allow $1 { domain -unconfined_domain }:file r_file_perms;
-	allow $1 { domain -unconfined_domain }:process getattr;
 
 	dontaudit $1 unconfined_domain:dir search;
 	dontaudit $1 unconfined_domain:file { getattr read };


More information about the scm-commits mailing list