From 39f77972aba5f9073ff3e8b64a8b8d170cb22141 Mon Sep 17 00:00:00 2001 From: Dominick Grift Date: Sat, 9 Nov 2013 10:45:11 +0100 Subject: [PATCH] init: the gdomap and minissdpd init scripts read the respective environ files in /etc/default. We need to give them a private type so that we can give the gdomap_admin() and minissdpd_admin() access to it, but it seems overengineering to create private environ types for these files Signed-off-by: Dominick Grift --- policy/modules/system/init.te | 8 ++++++++ 1 file changed, 8 insertions(+) diff --git a/policy/modules/system/init.te b/policy/modules/system/init.te index c6912851c..40e9ec540 100644 --- a/policy/modules/system/init.te +++ b/policy/modules/system/init.te @@ -453,6 +453,14 @@ ifdef(`distro_debian',` optional_policy(` exim_manage_var_lib_files(initrc_t) ') + + optional_policy(` + gdomap_read_config(initrc_t) + ') + + optional_policy(` + minissdpd_read_config(initrc_t) + ') ') ifdef(`distro_gentoo',`