From: gizmo@giz-works.com (Chris Richards) Date: Sun, 28 Nov 2010 02:45:32 -0600 Subject: [refpolicy] [PATCH 1/2] DHCPC daemon init network interface Message-ID: <1290933932-9193-1-git-send-email-gizmo@giz-works.com> To: refpolicy@oss.tresys.com List-Id: refpolicy.oss.tresys.com Allow dhcpcd DHCP Client daemon to start. Add interface to allow hostname daemon to talk to dhcpcd. Signed-off-by: Chris Richards --- policy/modules/system/sysnetwork.if | 19 +++++++++++++++++++ 1 files changed, 19 insertions(+), 0 deletions(-) diff --git a/policy/modules/system/sysnetwork.if b/policy/modules/system/sysnetwork.if index 8e71fb7..73bb9e8 100644 --- a/policy/modules/system/sysnetwork.if +++ b/policy/modules/system/sysnetwork.if @@ -196,6 +196,24 @@ interface(`sysnet_dbus_chat_dhcpc',` ######################################## ## +## Read and write the dhcp client unix +## stream socket +## +## +## +## Domain allowed access. +## +## +# +interface(`sysnet_rw_stream_sockets_dhcpc',` + gen_require(` + type dhcpc_t; + ') + allow $1 dhcpc_t:unix_stream_socket { read write }; +') + +######################################## +## ## Read and write dhcp configuration files. ## ## @@ -711,3 +729,4 @@ interface(`sysnet_use_portmap',` sysnet_read_config($1) ') + -- 1.7.3.2