[selinux-policy: 1954/3172] trunk: additional patch from kaigai to fix up some type transitions for unpriv clients.

Daniel J Walsh dwalsh at fedoraproject.org
Thu Oct 7 21:53:50 UTC 2010


commit 8e7d43c8ac88ded5fa17e015951dfd75bae9cf72
Author: Chris PeBenito <cpebenito at tresys.com>
Date:   Fri Jun 13 13:33:36 2008 +0000

    trunk: additional patch from kaigai to fix up some type transitions for unpriv clients.

 policy/modules/services/postgresql.if |    9 ++++-----
 1 files changed, 4 insertions(+), 5 deletions(-)
---
diff --git a/policy/modules/services/postgresql.if b/policy/modules/services/postgresql.if
index 7fbba93..7bf8152 100644
--- a/policy/modules/services/postgresql.if
+++ b/policy/modules/services/postgresql.if
@@ -340,18 +340,17 @@ interface(`postgresql_unpriv_client',`
 		class db_blob all_db_blob_perms;
 
 		attribute sepgsql_client_type;
-		attribute sepgsql_database_type;
 
-		type sepgsql_table_t, sepgsql_proc_t, sepgsql_blob_t;
+		type sepgsql_db_t, sepgsql_table_t, sepgsql_proc_t, sepgsql_blob_t;
 
 		type sepgsql_trusted_proc_t, sepgsql_trusted_domain_t;
 	')
 
 	typeattribute $1 sepgsql_client_type;
 
-	type_transition $1 sepgsql_database_type:db_table sepgsql_table_t;
-	type_transition $1 sepgsql_database_type:db_procedure sepgsql_proc_t;
-	type_transition $1 sepgsql_database_type:db_blob sepgsql_blob_t;
+	type_transition $1 sepgsql_db_t:db_table sepgsql_table_t;
+	type_transition $1 sepgsql_db_t:db_procedure sepgsql_proc_t;
+	type_transition $1 sepgsql_db_t:db_blob sepgsql_blob_t;
 
 	type_transition $1 sepgsql_trusted_proc_t:process sepgsql_trusted_domain_t;
 	allow $1 sepgsql_trusted_domain_t:process transition;


More information about the scm-commits mailing list