[selinux-policy: 851/3172] add missing nscd clients

Daniel J Walsh dwalsh at fedoraproject.org
Thu Oct 7 20:18:39 UTC 2010


commit e11d2e3bfd43b106a912abd79e17fbca16c9297c
Author: Chris PeBenito <cpebenito at tresys.com>
Date:   Tue Oct 25 18:28:41 2005 +0000

    add missing nscd clients

 refpolicy/policy/modules/services/apache.te |    4 ++++
 refpolicy/policy/modules/services/finger.te |    4 ++++
 refpolicy/policy/modules/services/rshd.te   |    4 ++++
 refpolicy/policy/modules/services/tftp.te   |    5 +++++
 refpolicy/policy/modules/system/hostname.te |    4 ++++
 5 files changed, 21 insertions(+), 0 deletions(-)
---
diff --git a/refpolicy/policy/modules/services/apache.te b/refpolicy/policy/modules/services/apache.te
index ce815d0..0bd436d 100644
--- a/refpolicy/policy/modules/services/apache.te
+++ b/refpolicy/policy/modules/services/apache.te
@@ -591,6 +591,10 @@ optional_policy(`nis.te',`
 	nis_use_ypbind(httpd_suexec_t)
 ')
 
+optional_policy(`nscd.te',`
+	nscd_use_socket(httpd_suexec_t)
+')
+
 ########################################
 #
 # Apache system script local policy
diff --git a/refpolicy/policy/modules/services/finger.te b/refpolicy/policy/modules/services/finger.te
index 72c467f..b45c65a 100644
--- a/refpolicy/policy/modules/services/finger.te
+++ b/refpolicy/policy/modules/services/finger.te
@@ -119,6 +119,10 @@ optional_policy(`nis.te',`
 	nis_use_ypbind(fingerd_t)
 ')
 
+optional_policy(`nscd.te',`
+	nscd_use_socket(fingerd_t)
+')
+
 optional_policy(`selinuxutil.te',`
 	seutil_sigchld_newrole(fingerd_t)
 ')
diff --git a/refpolicy/policy/modules/services/rshd.te b/refpolicy/policy/modules/services/rshd.te
index ba7c21b..5ab132e 100644
--- a/refpolicy/policy/modules/services/rshd.te
+++ b/refpolicy/policy/modules/services/rshd.te
@@ -82,6 +82,10 @@ optional_policy(`kerberos.te',`
 	kerberos_use(rshd_t)
 ')
 
+optional_policy(`nscd.te',`
+	nscd_use_socket(rshd_t)
+')
+
 ifdef(`TODO',`
 optional_policy(`rlogind.te', `
 	allow rshd_t rlogind_tmp_t:file rw_file_perms;
diff --git a/refpolicy/policy/modules/services/tftp.te b/refpolicy/policy/modules/services/tftp.te
index 2b791ad..93fc7f5 100644
--- a/refpolicy/policy/modules/services/tftp.te
+++ b/refpolicy/policy/modules/services/tftp.te
@@ -93,9 +93,14 @@ optional_policy(`mount.te',`
         mount_send_nfs_client_request(tftpd_t)
 ')
 
+optional_policy(`nscd.te',`
+	nscd_use_socket(tftpd_t)
+')
+
 optional_policy(`selinuxutil.te',`
         seutil_sigchld_newrole(tftpd_t)
 ')
+
 optional_policy(`udev.te', `
         udev_read_db(tftpd_t)
 ')
diff --git a/refpolicy/policy/modules/system/hostname.te b/refpolicy/policy/modules/system/hostname.te
index 4ea3d19..c814459 100644
--- a/refpolicy/policy/modules/system/hostname.te
+++ b/refpolicy/policy/modules/system/hostname.te
@@ -76,6 +76,10 @@ optional_policy(`hotplug.te',`
 	hotplug_dontaudit_use_fd(hostname_t)
 ')
 
+optional_policy(`nscd.te',`
+	nscd_use_socket(hostname_t)
+')
+
 optional_policy(`selinuxutil.te',`
 	seutil_sigchld_newrole(hostname_t)
 ')


More information about the scm-commits mailing list