[selinux-policy: 813/3172] Added signal permissions to postgres so it can start

Daniel J Walsh dwalsh at fedoraproject.org
Thu Oct 7 20:15:23 UTC 2010


commit 57d8e6c7a347fb9ef90656ceb6e67777070e6e4a
Author: Don Miner <dminer at tresys.com>
Date:   Mon Oct 24 17:28:17 2005 +0000

    Added signal permissions to postgres so it can start

 refpolicy/policy/modules/services/postgresql.te |    1 +
 1 files changed, 1 insertions(+), 0 deletions(-)
---
diff --git a/refpolicy/policy/modules/services/postgresql.te b/refpolicy/policy/modules/services/postgresql.te
index 66a5b7c..0123946 100644
--- a/refpolicy/policy/modules/services/postgresql.te
+++ b/refpolicy/policy/modules/services/postgresql.te
@@ -32,6 +32,7 @@ files_pid_file(postgresql_var_run_t)
 # postgresql Local policy
 #
 allow postgresql_t self:capability { kill dac_override dac_read_search chown fowner fsetid setuid setgid sys_nice sys_tty_config sys_admin };
+allow postgresql_t self:process signal_perms;
 allow postgresql_t self:fifo_file { getattr read write ioctl };
 allow postgresql_t self:file { getattr read };
 allow postgresql_t self:sem create_sem_perms;


More information about the scm-commits mailing list