From: guido@trentalancia.com (Guido Trentalancia) Date: Mon, 24 Jan 2011 01:43:56 +0100 Subject: [refpolicy] [PATCH/RFC 3/19]: patch set to update the git reference policy Message-ID: <1295829836.3862.62.camel@tesla.lan> To: refpolicy@oss.tresys.com List-Id: refpolicy.oss.tresys.com diff -pruN -x .git -x corenetwork.if -x corenetwork.te -x booleans.conf -x modules.conf refpolicy-git-18012011/policy/modules/admin/readahead.te refpolicy-git-18012011-update/policy/modules/admin/readahead.te --- refpolicy-git-18012011/policy/modules/admin/readahead.te 2011-01-08 19:07:21.165729194 +0100 +++ refpolicy-git-18012011-update/policy/modules/admin/readahead.te 2011-01-18 23:13:49.754846681 +0100 @@ -79,6 +79,7 @@ term_dontaudit_use_console(readahead_t) auth_dontaudit_read_shadow(readahead_t) +init_read_fifo_file(readahead_t) init_use_fds(readahead_t) init_use_script_ptys(readahead_t) init_getattr_initctl(readahead_t) diff -pruN -x .git -x booleans.conf -x corenetwork.if -x corenetwork.te -x modules.conf refpolicy-git-18012011/policy/modules/system/init.if refpolicy-git-18012011-new/policy/modules/system/init.if --- refpolicy-git-18012011/policy/modules/system/init.if 2011-01-08 19:07:21.351758570 +0100 +++ refpolicy-git-18012011-new/policy/modules/system/init.if 2011-01-23 00:29:43.873713518 +0100 @@ -947,6 +947,24 @@ interface(`init_read_state',` ######################################## ## +## Read init fifo file. +## +## +## +## Domain allowed access. +## +## +# +interface(`init_read_fifo_file',` + gen_require(` + attribute init_t; + ') + + read_fifo_files_pattern($1, init_t, init_t) +') + +######################################## +## ## Ptrace init ## ##