[selinux-policy: 2439/3172] Switch sysnet_use_portmap(), sysnet_use_ldap(), and sysnet_dns_name_resolve() to use sysnet_read_con

Daniel J Walsh dwalsh at fedoraproject.org
Thu Oct 7 22:36:31 UTC 2010


commit 81a0fb4024aefcef2bf8ce671ebac81202c5412d
Author: Chris PeBenito <cpebenito at tresys.com>
Date:   Thu Feb 25 13:53:52 2010 -0500

    Switch sysnet_use_portmap(), sysnet_use_ldap(), and sysnet_dns_name_resolve() to use sysnet_read_config() rather thane explicit type usage.

 policy/modules/system/sysnetwork.if |    9 +++------
 1 files changed, 3 insertions(+), 6 deletions(-)
---
diff --git a/policy/modules/system/sysnetwork.if b/policy/modules/system/sysnetwork.if
index 43fc19b..95c6c13 100644
--- a/policy/modules/system/sysnetwork.if
+++ b/policy/modules/system/sysnetwork.if
@@ -556,8 +556,7 @@ interface(`sysnet_dns_name_resolve',`
 	corenet_tcp_connect_dns_port($1)
 	corenet_sendrecv_dns_client_packets($1)
 
-	files_search_etc($1)
-	allow $1 net_conf_t:file read_file_perms;
+	sysnet_read_config($1)
 ')
 
 ########################################
@@ -585,8 +584,7 @@ interface(`sysnet_use_ldap',`
 	corenet_tcp_connect_ldap_port($1)
 	corenet_sendrecv_ldap_client_packets($1)
 
-	files_search_etc($1)
-	allow $1 net_conf_t:file read_file_perms;
+	sysnet_read_config($1)
 ')
 
 ########################################
@@ -618,6 +616,5 @@ interface(`sysnet_use_portmap',`
 	corenet_tcp_connect_portmap_port($1)
 	corenet_sendrecv_portmap_client_packets($1)
 
-	files_search_etc($1)
-	allow $1 net_conf_t:file read_file_perms;
+	sysnet_read_config($1)
 ')


More information about the scm-commits mailing list