From 7ebd6a9079e0c989c6c1f8b53bc415e23e3ab6f1 Mon Sep 17 00:00:00 2001 From: Chris PeBenito Date: Mon, 24 Oct 2005 20:25:59 +0000 Subject: [PATCH] add proc_net lnk --- refpolicy/policy/modules/kernel/kernel.if | 3 +-- 1 file changed, 1 insertion(+), 2 deletions(-) diff --git a/refpolicy/policy/modules/kernel/kernel.if b/refpolicy/policy/modules/kernel/kernel.if index 21b89ab5e..6d557ad2c 100644 --- a/refpolicy/policy/modules/kernel/kernel.if +++ b/refpolicy/policy/modules/kernel/kernel.if @@ -751,13 +751,12 @@ interface(`kernel_search_network_state',` interface(`kernel_read_network_state',` gen_require(` type proc_t, proc_net_t; - class dir r_dir_perms; - class file r_file_perms; ') allow $1 proc_t:dir search; allow $1 proc_net_t:dir r_dir_perms; allow $1 proc_net_t:file r_file_perms; + allow $1 proc_net_t:lnk_file { getattr read }; ') ########################################