[selinux-policy: 2368/3172] DCC patch from Dan Walsh.
Daniel J Walsh
dwalsh at fedoraproject.org
Thu Oct 7 22:30:12 UTC 2010
commit dcabb11eb5df48c840e8766f26bb705068c26ce1
Author: Chris PeBenito <cpebenito at tresys.com>
Date: Thu Jan 7 11:50:20 2010 -0500
DCC patch from Dan Walsh.
policy/modules/services/dcc.te | 10 ++++++++--
1 files changed, 8 insertions(+), 2 deletions(-)
---
diff --git a/policy/modules/services/dcc.te b/policy/modules/services/dcc.te
index 0e9f815..21c8230 100644
--- a/policy/modules/services/dcc.te
+++ b/policy/modules/services/dcc.te
@@ -1,5 +1,5 @@
-policy_module(dcc, 1.8.0)
+policy_module(dcc, 1.8.1)
########################################
#
@@ -130,7 +130,7 @@ files_tmp_filetrans(dcc_client_t, dcc_client_tmp_t, { file dir })
# Access files in /var/dcc. The map file can be updated
allow dcc_client_t dcc_var_t:dir list_dir_perms;
-read_files_pattern(dcc_client_t, dcc_var_t, dcc_var_t)
+manage_files_pattern(dcc_client_t, dcc_var_t, dcc_var_t)
read_lnk_files_pattern(dcc_client_t, dcc_var_t, dcc_var_t)
kernel_read_system_state(dcc_client_t)
@@ -145,6 +145,8 @@ corenet_udp_bind_generic_node(dcc_client_t)
files_read_etc_files(dcc_client_t)
files_read_etc_runtime_files(dcc_client_t)
+fs_getattr_all_fs(dcc_client_t)
+
auth_use_nsswitch(dcc_client_t)
logging_send_syslog_msg(dcc_client_t)
@@ -154,6 +156,10 @@ miscfiles_read_localization(dcc_client_t)
userdom_use_user_terminals(dcc_client_t)
optional_policy(`
+ amavis_read_spool_files(dcc_client_t)
+')
+
+optional_policy(`
spamassassin_read_spamd_tmp_files(dcc_client_t)
')
More information about the scm-commits
mailing list