[selinux-policy: 2852/3172] Allow all X apps to use direct dri if user_direct_dri boolean is turned on

Daniel J Walsh dwalsh at fedoraproject.org
Thu Oct 7 23:13:56 UTC 2010


commit 09686dc8ee9a092501b273bbcc20dea992ff4111
Author: Dan Walsh <dwalsh at redhat.com>
Date:   Wed Sep 1 09:56:28 2010 -0400

    Allow all X apps to use direct dri if user_direct_dri boolean is turned on

 policy/modules/services/xserver.if |    4 ++++
 1 files changed, 4 insertions(+), 0 deletions(-)
---
diff --git a/policy/modules/services/xserver.if b/policy/modules/services/xserver.if
index a1d911d..a5b3186 100644
--- a/policy/modules/services/xserver.if
+++ b/policy/modules/services/xserver.if
@@ -511,6 +511,10 @@ template(`xserver_user_x_domain_template',`
 	xserver_object_types_template($1)
 	xserver_common_x_domain_template($1,$2)
 
+	tunable_policy(`user_direct_dri',`
+		dev_rw_dri($2)
+	')
+
 	# Client write xserver shm
 	tunable_policy(`allow_write_xshm',`
 		allow $2 xserver_t:shm rw_shm_perms;


More information about the scm-commits mailing list