diff --git a/policy/modules/services/xserver.te b/policy/modules/services/xserver.te index f81fcacae..d57d09ff2 100644 --- a/policy/modules/services/xserver.te +++ b/policy/modules/services/xserver.te @@ -820,7 +820,7 @@ allow xserver_t xdm_t:shm rw_shm_perms; allow xserver_t xdm_var_lib_t:file { getattr read }; dontaudit xserver_t xdm_var_lib_t:dir search; -allow xserver_t xdm_var_run_t:file read_file_perms; +read_files_pattern(xserver_t, xdm_var_run_t, xdm_var_run_t) # Label pid and temporary files with derived types. manage_files_pattern(xserver_t, xdm_tmp_t, xdm_tmp_t)