From b6dcb211f00e42d11ba08f7a785c39990e6e86d7 Mon Sep 17 00:00:00 2001 From: Luis Ressel Date: Mon, 11 Aug 2014 14:31:33 +0200 Subject: [PATCH] Label /usr/sbin/{add, del}part as fsadm_exec_t These are seldomly-used tools from the util-linux package. Please check if they are located in /sbin instead of /usr/sbin on other distributions. Signed-off-by: Luis Ressel --- policy/modules/system/fstools.fc | 2 ++ 1 file changed, 2 insertions(+) diff --git a/policy/modules/system/fstools.fc b/policy/modules/system/fstools.fc index 634388be9..3101274e1 100644 --- a/policy/modules/system/fstools.fc +++ b/policy/modules/system/fstools.fc @@ -48,7 +48,9 @@ /usr/bin/scsi_unique_id -- gen_context(system_u:object_r:fsadm_exec_t,s0) /usr/bin/syslinux -- gen_context(system_u:object_r:fsadm_exec_t,s0) +/usr/sbin/addpart -- gen_context(system_u:object_r:fsadm_exec_t,s0) /usr/sbin/clubufflush -- gen_context(system_u:object_r:fsadm_exec_t,s0) +/usr/sbin/delpart -- gen_context(system_u:object_r:fsadm_exec_t,s0) /usr/sbin/fatsort -- gen_context(system_u:object_r:fsadm_exec_t,s0) /usr/sbin/fsck.* -- gen_context(system_u:object_r:fsadm_exec_t,s0) /usr/sbin/mkfs.* -- gen_context(system_u:object_r:fsadm_exec_t,s0)