[selinux-policy: 1283/3172] fix most missing entries from bug 1567
Daniel J Walsh
dwalsh at fedoraproject.org
Thu Oct 7 20:56:00 UTC 2010
commit 3dbceb8a0beab345afc56cff7f1422ff7e15e02e
Author: Chris PeBenito <cpebenito at tresys.com>
Date: Tue Mar 21 15:42:30 2006 +0000
fix most missing entries from bug 1567
refpolicy/policy/modules/kernel/corenetwork.fc | 1 +
refpolicy/policy/modules/kernel/corenetwork.te.in | 2 +-
refpolicy/policy/modules/kernel/devices.fc | 4 ++++
refpolicy/policy/modules/kernel/devices.te | 2 +-
4 files changed, 7 insertions(+), 2 deletions(-)
---
diff --git a/refpolicy/policy/modules/kernel/corenetwork.fc b/refpolicy/policy/modules/kernel/corenetwork.fc
index 2769796..9e5c83e 100644
--- a/refpolicy/policy/modules/kernel/corenetwork.fc
+++ b/refpolicy/policy/modules/kernel/corenetwork.fc
@@ -2,5 +2,6 @@
/dev/ippp.* -c gen_context(system_u:object_r:ppp_device_t,s0)
/dev/ppp -c gen_context(system_u:object_r:ppp_device_t,s0)
/dev/pppox.* -c gen_context(system_u:object_r:ppp_device_t,s0)
+/dev/tap.* -c gen_context(system_u:object_r:tun_tap_device_t,s0)
/dev/net/.* -c gen_context(system_u:object_r:tun_tap_device_t,s0)
diff --git a/refpolicy/policy/modules/kernel/corenetwork.te.in b/refpolicy/policy/modules/kernel/corenetwork.te.in
index b852389..ea9a43a 100644
--- a/refpolicy/policy/modules/kernel/corenetwork.te.in
+++ b/refpolicy/policy/modules/kernel/corenetwork.te.in
@@ -1,5 +1,5 @@
-policy_module(corenetwork,1.1.1)
+policy_module(corenetwork,1.1.2)
########################################
#
diff --git a/refpolicy/policy/modules/kernel/devices.fc b/refpolicy/policy/modules/kernel/devices.fc
index 55e2415..2b9802e 100644
--- a/refpolicy/policy/modules/kernel/devices.fc
+++ b/refpolicy/policy/modules/kernel/devices.fc
@@ -14,14 +14,18 @@
/dev/console -c gen_context(system_u:object_r:console_device_t,s0)
/dev/dsp.* -c gen_context(system_u:object_r:sound_device_t,s0)
/dev/efirtc -c gen_context(system_u:object_r:clock_device_t,s0)
+/dev/event.* -c gen_context(system_u:object_r:event_device_t,s0)
/dev/fb[0-9]* -c gen_context(system_u:object_r:framebuf_device_t,s0)
/dev/full -c gen_context(system_u:object_r:null_device_t,s0)
+/dev/hw_random -c gen_context(system_u:object_r:random_device_t,s0)
+/dev/i915 -c gen_context(system_u:object_r:dri_device_t,s0)
/dev/irlpt[0-9]+ -c gen_context(system_u:object_r:printer_device_t,s0)
/dev/js.* -c gen_context(system_u:object_r:mouse_device_t,s0)
/dev/kmem -c gen_context(system_u:object_r:memory_device_t,s15:c0.c255)
/dev/logibm -c gen_context(system_u:object_r:mouse_device_t,s0)
/dev/lp.* -c gen_context(system_u:object_r:printer_device_t,s0)
/dev/mem -c gen_context(system_u:object_r:memory_device_t,s15:c0.c255)
+/dev/mice -c gen_context(system_u:object_r:mouse_device_t,s0)
/dev/microcode -c gen_context(system_u:object_r:cpu_device_t,s0)
/dev/midi.* -c gen_context(system_u:object_r:sound_device_t,s0)
/dev/mixer.* -c gen_context(system_u:object_r:sound_device_t,s0)
diff --git a/refpolicy/policy/modules/kernel/devices.te b/refpolicy/policy/modules/kernel/devices.te
index e4cd628..1e38097 100644
--- a/refpolicy/policy/modules/kernel/devices.te
+++ b/refpolicy/policy/modules/kernel/devices.te
@@ -1,5 +1,5 @@
-policy_module(devices,1.1.0)
+policy_module(devices,1.1.1)
########################################
#
More information about the scm-commits
mailing list