Patch to start deprecating usercanread attribute from Ryan Bradetich.
This commit is contained in:
parent
a715dc0995
commit
bbb7cc8927
|
@ -1,3 +1,4 @@
|
||||||
|
- Patch to start deprecating usercanread attribute from Ryan Bradetich.
|
||||||
- Add dccp_socket object class which was added in kernel 2.6.20.
|
- Add dccp_socket object class which was added in kernel 2.6.20.
|
||||||
- Patch for prelink relabefrom it's temp files from Dan Walsh.
|
- Patch for prelink relabefrom it's temp files from Dan Walsh.
|
||||||
- Patch for capability fix for auditd and networking fix for syslogd from
|
- Patch for capability fix for auditd and networking fix for syslogd from
|
||||||
|
|
|
@ -110,14 +110,7 @@ interface(`files_pid_file',`
|
||||||
## </param>
|
## </param>
|
||||||
#
|
#
|
||||||
interface(`files_config_file',`
|
interface(`files_config_file',`
|
||||||
gen_require(`
|
|
||||||
attribute usercanread;
|
|
||||||
')
|
|
||||||
|
|
||||||
files_type($1)
|
files_type($1)
|
||||||
|
|
||||||
# this is a hack and should be removed.
|
|
||||||
typeattribute $1 usercanread;
|
|
||||||
')
|
')
|
||||||
|
|
||||||
########################################
|
########################################
|
||||||
|
|
|
@ -1,5 +1,5 @@
|
||||||
|
|
||||||
policy_module(files,1.4.1)
|
policy_module(files,1.4.2)
|
||||||
|
|
||||||
########################################
|
########################################
|
||||||
#
|
#
|
||||||
|
@ -30,7 +30,9 @@ attribute security_file_type;
|
||||||
attribute tmpfile;
|
attribute tmpfile;
|
||||||
attribute tmpfsfile;
|
attribute tmpfsfile;
|
||||||
|
|
||||||
# this is a hack and should be changed
|
# this attribute is not currently used and will be removed in the future.
|
||||||
|
# unfortunately, this attribute can not be removed yet because it may cause
|
||||||
|
# some policies to fail to link if it is still required.
|
||||||
attribute usercanread;
|
attribute usercanread;
|
||||||
|
|
||||||
#
|
#
|
||||||
|
|
Loading…
Reference in New Issue