[selinux-policy: 3162/3172] Alllow vpnc to be able to read /root/.cert

Daniel J Walsh dwalsh at fedoraproject.org
Thu Oct 7 23:41:14 UTC 2010


commit 13692730f054416f82be8cd5d273feb1e748ef98
Author: Miroslav Grepl <mgrepl at redhat.com>
Date:   Tue Oct 5 14:56:02 2010 +0200

    Alllow vpnc to be able to read /root/.cert

 policy/modules/admin/vpn.te |    2 +-
 1 files changed, 1 insertions(+), 1 deletions(-)
---
diff --git a/policy/modules/admin/vpn.te b/policy/modules/admin/vpn.te
index 6542902..6067b85 100644
--- a/policy/modules/admin/vpn.te
+++ b/policy/modules/admin/vpn.te
@@ -106,8 +106,8 @@ sysnet_etc_filetrans_config(vpnc_t)
 sysnet_manage_config(vpnc_t)
 
 userdom_use_all_users_fds(vpnc_t)
-userdom_dontaudit_search_user_home_content(vpnc_t)
 userdom_read_home_certs(vpnc_t)
+userdom_search_admin_dir(vpnc_t)
 
 optional_policy(`
 	dbus_system_bus_client(vpnc_t)


More information about the scm-commits mailing list