From: cpebenito@tresys.com (Christopher J. PeBenito) Date: Fri, 15 Apr 2011 10:39:46 -0400 Subject: [refpolicy] allow postgresql_t to read selabel files In-Reply-To: References: Message-ID: <4DA858B2.7050804@tresys.com> To: refpolicy@oss.tresys.com List-Id: refpolicy.oss.tresys.com On 4/15/2011 4:40 AM, Kohei Kaigai wrote: > The attached patch allows postgresql_t domain to read selabel definition files > (such as /etc/selinux/targeted/contexts/sepgsql_contexts). > > The upcoming version (v9.1) uses selabel_lookup(3) to assign initial security context > of database objects, we need to allow this reference. Merged. -- Chris PeBenito Tresys Technology, LLC www.tresys.com | oss.tresys.com