[selinux-policy/master_contrib: 22/47] Add support for /var/tmp/abrt(/.*)?
Miroslav Grepl
mgrepl at fedoraproject.org
Wed Jan 16 13:32:21 UTC 2013
commit bd5f5f762691aef9d433bb3cd545118b51a1c769
Author: Miroslav Grepl <mgrepl at redhat.com>
Date: Mon Jan 14 12:29:34 2013 +0100
Add support for /var/tmp/abrt(/.*)?
abrt.fc | 1 +
abrt.te | 4 ++++
2 files changed, 5 insertions(+), 0 deletions(-)
---
diff --git a/abrt.fc b/abrt.fc
index ad5baf5..94697ea 100644
--- a/abrt.fc
+++ b/abrt.fc
@@ -23,6 +23,7 @@
/var/run/abrt(/.*)? gen_context(system_u:object_r:abrt_var_run_t,s0)
/var/spool/abrt(/.*)? gen_context(system_u:object_r:abrt_var_cache_t,s0)
+/var/tmp/abrt(/.*)? gen_context(system_u:object_r:abrt_var_cache_t,s0)
# ABRT retrace server
/usr/bin/abrt-retrace-worker -- gen_context(system_u:object_r:abrt_retrace_worker_exec_t,s0)
diff --git a/abrt.te b/abrt.te
index db88fca..23e8575 100644
--- a/abrt.te
+++ b/abrt.te
@@ -47,6 +47,7 @@ files_tmp_file(abrt_tmp_t)
# var/cache files
type abrt_var_cache_t;
files_type(abrt_var_cache_t)
+files_tmp_file(abrt_var_cache_t)
# pid files
type abrt_var_run_t;
@@ -131,6 +132,7 @@ manage_dirs_pattern(abrt_t, abrt_var_cache_t, abrt_var_cache_t)
manage_lnk_files_pattern(abrt_t, abrt_var_cache_t, abrt_var_cache_t)
files_var_filetrans(abrt_t, abrt_var_cache_t, { file dir })
files_spool_filetrans(abrt_t, abrt_var_cache_t, dir)
+files_tmp_filetrans(abrt_t, abrt_var_cache_t, dir, "abrt")
# abrt pid files
manage_files_pattern(abrt_t, abrt_var_run_t, abrt_var_run_t)
@@ -299,6 +301,7 @@ manage_dirs_pattern(abrt_helper_t, abrt_var_cache_t, abrt_var_cache_t)
manage_files_pattern(abrt_helper_t, abrt_var_cache_t, abrt_var_cache_t)
manage_lnk_files_pattern(abrt_helper_t, abrt_var_cache_t, abrt_var_cache_t)
files_var_filetrans(abrt_helper_t, abrt_var_cache_t, { file dir })
+files_tmp_filetrans(abrt_helper_t, abrt_var_cache_t, dir, "abrt")
read_files_pattern(abrt_helper_t, abrt_var_run_t, abrt_var_run_t)
read_lnk_files_pattern(abrt_helper_t, abrt_var_run_t, abrt_var_run_t)
@@ -428,6 +431,7 @@ manage_dirs_pattern(abrt_dump_oops_t, abrt_var_cache_t, abrt_var_cache_t)
manage_files_pattern(abrt_dump_oops_t, abrt_var_cache_t, abrt_var_cache_t)
manage_lnk_files_pattern(abrt_dump_oops_t, abrt_var_cache_t, abrt_var_cache_t)
files_var_filetrans(abrt_dump_oops_t, abrt_var_cache_t, { file dir })
+files_tmp_filetrans(abrt_dump_oops_t, abrt_var_cache_t, dir, "abrt")
read_files_pattern(abrt_dump_oops_t, abrt_var_run_t, abrt_var_run_t)
read_lnk_files_pattern(abrt_dump_oops_t, abrt_var_run_t, abrt_var_run_t)
More information about the scm-commits
mailing list