From 3d37bca18fbb3f6bf80b6c3848ba5e113e21b04b Mon Sep 17 00:00:00 2001 From: Don Miner Date: Mon, 24 Oct 2005 11:21:28 +0000 Subject: [PATCH] Added an allow that permitted apache to read httpd_sys_content_t stuff so that it would start --- refpolicy/policy/modules/services/apache.te | 2 ++ 1 file changed, 2 insertions(+) diff --git a/refpolicy/policy/modules/services/apache.te b/refpolicy/policy/modules/services/apache.te index 144df9b41..6f11289a6 100644 --- a/refpolicy/policy/modules/services/apache.te +++ b/refpolicy/policy/modules/services/apache.te @@ -177,6 +177,8 @@ allow httpd_t httpd_squirrelmail_t:dir create_dir_perms; allow httpd_t httpd_squirrelmail_t:lnk_file create_lnk_perms; allow httpd_t httpd_squirrelmail_t:file create_file_perms; +allow httpd_t httpd_sys_content_t:dir r_dir_perms; + allow httpd_t httpd_tmp_t:dir create_dir_perms; allow httpd_t httpd_tmp_t:file create_file_perms; files_create_tmp_files(httpd_t, httpd_tmp_t, { file dir })