[selinux-policy: 966/3172] remove extra rule
Daniel J Walsh
dwalsh at fedoraproject.org
Thu Oct 7 20:28:29 UTC 2010
commit 0d5d74e02bb294a4daa40e0ad05c3719079d2eef
Author: Chris PeBenito <cpebenito at tresys.com>
Date: Mon Nov 14 19:33:09 2005 +0000
remove extra rule
refpolicy/policy/modules/system/domain.if | 1 -
1 files changed, 0 insertions(+), 1 deletions(-)
---
diff --git a/refpolicy/policy/modules/system/domain.if b/refpolicy/policy/modules/system/domain.if
index 5087953..ffb5e26 100644
--- a/refpolicy/policy/modules/system/domain.if
+++ b/refpolicy/policy/modules/system/domain.if
@@ -545,7 +545,6 @@ interface(`domain_read_confined_domains_state',`
allow $1 { domain -unconfined_domain }:dir r_dir_perms;
allow $1 { domain -unconfined_domain }:lnk_file r_file_perms;
allow $1 { domain -unconfined_domain }:file r_file_perms;
- allow $1 { domain -unconfined_domain }:process getattr;
dontaudit $1 unconfined_domain:dir search;
dontaudit $1 unconfined_domain:file { getattr read };
More information about the scm-commits
mailing list