From 1b22152c2c85a3435b9bef02689dc0672e463601 Mon Sep 17 00:00:00 2001 From: Chris PeBenito Date: Mon, 22 Mar 2010 15:09:27 -0400 Subject: [PATCH] Rdisc patch from Dan Walsh. --- policy/modules/services/rdisc.if | 19 +++++++++++++++++++ policy/modules/services/rdisc.te | 2 +- 2 files changed, 20 insertions(+), 1 deletion(-) diff --git a/policy/modules/services/rdisc.if b/policy/modules/services/rdisc.if index c163e275c..fe24d25d2 100644 --- a/policy/modules/services/rdisc.if +++ b/policy/modules/services/rdisc.if @@ -1 +1,20 @@ ## Network router discovery daemon + +###################################### +## +## Execute rdisc in the caller domain. +## +## +## +## Domain allowed access. +## +## +# +interface(`rdisc_exec',` + gen_require(` + type rdisc_exec_t; + ') + + corecmd_search_bin($1) + can_exec($1, rdisc_exec_t) +') diff --git a/policy/modules/services/rdisc.te b/policy/modules/services/rdisc.te index 6d63a4248..69dd63e83 100644 --- a/policy/modules/services/rdisc.te +++ b/policy/modules/services/rdisc.te @@ -1,5 +1,5 @@ -policy_module(rdisc, 1.7.0) +policy_module(rdisc, 1.7.1) ######################################## #