[selinux-policy: 1329/3172] really fix init out of base module problem
Daniel J Walsh
dwalsh at fedoraproject.org
Thu Oct 7 21:00:20 UTC 2010
commit 27c34bbe0de673644ca6de936bd1afc7051c8869
Author: Chris PeBenito <cpebenito at tresys.com>
Date: Wed Apr 5 19:58:26 2006 +0000
really fix init out of base module problem
refpolicy/policy/modules/system/init.if | 12 ++++++------
refpolicy/policy/modules/system/init.te | 2 +-
2 files changed, 7 insertions(+), 7 deletions(-)
---
diff --git a/refpolicy/policy/modules/system/init.if b/refpolicy/policy/modules/system/init.if
index a9dcfc1..1409afa 100644
--- a/refpolicy/policy/modules/system/init.if
+++ b/refpolicy/policy/modules/system/init.if
@@ -194,7 +194,7 @@ interface(`init_getpgid',`
type init_t;
# cjp: remove this when init_t decl is moved back to this module
- type init_exec_t;
+ type initctl_t;
')
allow $1 init_t:process getpgid;
@@ -215,7 +215,7 @@ interface(`init_signull',`
type init_t;
# cjp: remove this when init_t decl is moved back to this module
- type init_exec_t;
+ type initctl_t;
')
allow $1 init_t:process signull;
@@ -236,7 +236,7 @@ interface(`init_sigchld',`
type init_t;
# cjp: remove this when init_t decl is moved back to this module
- type init_exec_t;
+ type initctl_t;
')
allow $1 init_t:process sigchld;
@@ -251,7 +251,7 @@ interface(`init_use_fds',`
type init_t;
# cjp: remove this when init_t decl is moved back to this module
- type init_exec_t;
+ type initctl_t;
')
allow $1 init_t:fd use;
@@ -266,7 +266,7 @@ interface(`init_dontaudit_use_fds',`
type init_t;
# cjp: remove this when init_t decl is moved back to this module
- type init_exec_t;
+ type initctl_t;
')
dontaudit $1 init_t:fd use;
@@ -287,7 +287,7 @@ interface(`init_udp_send',`
type init_t;
# cjp: remove this when init_t decl is moved back to this module
- type init_exec_t;
+ type initctl_t;
')
allow $1 init_t:udp_socket sendto;
diff --git a/refpolicy/policy/modules/system/init.te b/refpolicy/policy/modules/system/init.te
index 9a4e18b..15394d8 100644
--- a/refpolicy/policy/modules/system/init.te
+++ b/refpolicy/policy/modules/system/init.te
@@ -1,5 +1,5 @@
-policy_module(init,1.3.5)
+policy_module(init,1.3.6)
gen_require(`
class passwd rootok;
More information about the scm-commits
mailing list