From: dominick.grift@gmail.com (Dominick Grift) Date: Sun, 21 Oct 2012 14:20:11 +0200 Subject: [refpolicy] [PATCH 01/10] For svirt_lxc_domain In-Reply-To: <1350822019-15079-1-git-send-email-dominick.grift@gmail.com> References: <1350822019-15079-1-git-send-email-dominick.grift@gmail.com> Message-ID: <1350822019-15079-2-git-send-email-dominick.grift@gmail.com> To: refpolicy@oss.tresys.com List-Id: refpolicy.oss.tresys.com Signed-off-by: Dominick Grift --- policy/modules/system/udev.if | 19 +++++++++++++++++++ 1 files changed, 19 insertions(+), 0 deletions(-) diff --git a/policy/modules/system/udev.if b/policy/modules/system/udev.if index 77a13a5..9ccfd8a 100644 --- a/policy/modules/system/udev.if +++ b/policy/modules/system/udev.if @@ -224,6 +224,25 @@ interface(`udev_rw_db',` ######################################## ## +## Read udev pid files. +## +## +## +## Domain allowed access. +## +## +# +interface(`udev_read_pid_files',` + gen_require(` + type udev_var_run_t; + ') + + files_search_pids($1) + read_files_pattern($1, udev_var_run_t, udev_var_run_t) +') + +######################################## +## ## Search through udev pid content ## ## -- 1.7.7.6