From 05ca5f7b59767a4573b997b2813569ecf485d5ae Mon Sep 17 00:00:00 2001 From: Jeremy Solt Date: Fri, 15 Oct 2010 14:53:00 -0400 Subject: [PATCH] bitlbee patch from Dan Walsh --- policy/modules/services/bitlbee.if | 4 ++-- policy/modules/services/bitlbee.te | 7 ++++++- 2 files changed, 8 insertions(+), 3 deletions(-) diff --git a/policy/modules/services/bitlbee.if b/policy/modules/services/bitlbee.if index ed4e7a2f4..de0bd6793 100644 --- a/policy/modules/services/bitlbee.if +++ b/policy/modules/services/bitlbee.if @@ -6,7 +6,7 @@ ## ## ## -## Domain allowed accesss. +## Domain allowed accesss. ## ## # @@ -22,7 +22,7 @@ interface(`bitlbee_read_config',` ######################################## ## -## All of the rules required to administrate +## All of the rules required to administrate ## an bitlbee environment ## ## diff --git a/policy/modules/services/bitlbee.te b/policy/modules/services/bitlbee.te index f42cdfc92..2ba2d1f67 100644 --- a/policy/modules/services/bitlbee.te +++ b/policy/modules/services/bitlbee.te @@ -26,7 +26,8 @@ files_type(bitlbee_var_t) # # Local policy # -# + +allow bitlbee_t self:capability { setgid setuid }; allow bitlbee_t self:udp_socket create_socket_perms; allow bitlbee_t self:tcp_socket { create_stream_socket_perms connected_stream_socket_perms }; @@ -80,6 +81,10 @@ files_read_usr_files(bitlbee_t) libs_legacy_use_shared_libs(bitlbee_t) +auth_use_nsswitch(bitlbee_t) + +logging_send_syslog_msg(bitlbee_t) + miscfiles_read_localization(bitlbee_t) sysnet_dns_name_resolve(bitlbee_t)