diff --git a/policy/modules/system/xdg.if b/policy/modules/system/xdg.if index 823042414..a3c2759b7 100644 --- a/policy/modules/system/xdg.if +++ b/policy/modules/system/xdg.if @@ -635,6 +635,24 @@ interface(`xdg_relabel_all_config',` userdom_search_user_home_dirs($1) ') +######################################## +## +## Search through the xdg data home directories +## +## +## +## Domain allowed access +## +## +# +interface(`xdg_search_data_dirs',` + gen_require(` + type xdg_data_t; + ') + + allow $1 xdg_data_t:dir search_dir_perms; +') + ######################################## ## ## Watch the xdg data home directories