2014-02-16 13:35:39

by Mira Ressel

[permalink] [raw]
Subject: [refpolicy] [PATCH] Generalize grub2 pattern

GRUB2 helper programs can be named either grub2-* or grub-*, depending
on distro and configuration.
---
policy/modules/admin/bootloader.fc | 4 ++--
1 file changed, 2 insertions(+), 2 deletions(-)

diff --git a/policy/modules/admin/bootloader.fc b/policy/modules/admin/bootloader.fc
index 2626ebf..8c7e6c2 100644
--- a/policy/modules/admin/bootloader.fc
+++ b/policy/modules/admin/bootloader.fc
@@ -7,5 +7,5 @@
/sbin/ybin.* -- gen_context(system_u:object_r:bootloader_exec_t,s0)

/usr/sbin/grub -- gen_context(system_u:object_r:bootloader_exec_t,s0)
-/usr/sbin/grub2-bios-setup -- gen_context(system_u:object_r:bootloader_exec_t,s0)
-/usr/sbin/grub2-probe -- gen_context(system_u:object_r:bootloader_exec_t,s0)
+/usr/sbin/grub2?-bios-setup -- gen_context(system_u:object_r:bootloader_exec_t,s0)
+/usr/sbin/grub2?-probe -- gen_context(system_u:object_r:bootloader_exec_t,s0)
--
1.8.5.5


2014-03-03 14:07:45

by cpebenito

[permalink] [raw]
Subject: [refpolicy] [PATCH] Generalize grub2 pattern

On 2/16/2014 8:35 AM, Luis Ressel wrote:
> GRUB2 helper programs can be named either grub2-* or grub-*, depending
> on distro and configuration.
> ---
> policy/modules/admin/bootloader.fc | 4 ++--
> 1 file changed, 2 insertions(+), 2 deletions(-)
>
> diff --git a/policy/modules/admin/bootloader.fc b/policy/modules/admin/bootloader.fc
> index 2626ebf..8c7e6c2 100644
> --- a/policy/modules/admin/bootloader.fc
> +++ b/policy/modules/admin/bootloader.fc
> @@ -7,5 +7,5 @@
> /sbin/ybin.* -- gen_context(system_u:object_r:bootloader_exec_t,s0)
>
> /usr/sbin/grub -- gen_context(system_u:object_r:bootloader_exec_t,s0)
> -/usr/sbin/grub2-bios-setup -- gen_context(system_u:object_r:bootloader_exec_t,s0)
> -/usr/sbin/grub2-probe -- gen_context(system_u:object_r:bootloader_exec_t,s0)
> +/usr/sbin/grub2?-bios-setup -- gen_context(system_u:object_r:bootloader_exec_t,s0)
> +/usr/sbin/grub2?-probe -- gen_context(system_u:object_r:bootloader_exec_t,s0)

Merged.

--
Chris PeBenito
Tresys Technology, LLC
http://www.tresys.com | oss.tresys.com