diff --git a/policy/modules/services/bitlbee.if b/policy/modules/services/bitlbee.if index ed4e7a2f4..de0bd6793 100644 --- a/policy/modules/services/bitlbee.if +++ b/policy/modules/services/bitlbee.if @@ -6,7 +6,7 @@ ## ## ## -## Domain allowed accesss. +## Domain allowed accesss. ## ## # @@ -22,7 +22,7 @@ interface(`bitlbee_read_config',` ######################################## ## -## All of the rules required to administrate +## All of the rules required to administrate ## an bitlbee environment ## ## diff --git a/policy/modules/services/bitlbee.te b/policy/modules/services/bitlbee.te index f42cdfc92..2ba2d1f67 100644 --- a/policy/modules/services/bitlbee.te +++ b/policy/modules/services/bitlbee.te @@ -26,7 +26,8 @@ files_type(bitlbee_var_t) # # Local policy # -# + +allow bitlbee_t self:capability { setgid setuid }; allow bitlbee_t self:udp_socket create_socket_perms; allow bitlbee_t self:tcp_socket { create_stream_socket_perms connected_stream_socket_perms }; @@ -80,6 +81,10 @@ files_read_usr_files(bitlbee_t) libs_legacy_use_shared_libs(bitlbee_t) +auth_use_nsswitch(bitlbee_t) + +logging_send_syslog_msg(bitlbee_t) + miscfiles_read_localization(bitlbee_t) sysnet_dns_name_resolve(bitlbee_t)