From 7e81399d84bf023d362ec8ee62ef3a6b40882c4f Mon Sep 17 00:00:00 2001 From: Chris PeBenito Date: Fri, 18 Dec 2009 10:35:31 -0500 Subject: [PATCH] apm patch from Dan Walsh. --- policy/modules/services/apm.te | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/policy/modules/services/apm.te b/policy/modules/services/apm.te index 88c9d86b3..b215a1681 100644 --- a/policy/modules/services/apm.te +++ b/policy/modules/services/apm.te @@ -1,5 +1,5 @@ -policy_module(apm, 1.10.0) +policy_module(apm, 1.10.1) ######################################## # @@ -60,7 +60,7 @@ logging_send_syslog_msg(apm_t) # mknod: controlling an orderly resume of PCMCIA requires creating device # nodes 254,{0,1,2} for some reason. allow apmd_t self:capability { sys_admin sys_nice sys_time kill mknod }; -dontaudit apmd_t self:capability { setuid dac_override dac_read_search sys_tty_config }; +dontaudit apmd_t self:capability { setuid dac_override dac_read_search sys_ptrace sys_tty_config }; allow apmd_t self:process { signal_perms getsession }; allow apmd_t self:fifo_file rw_fifo_file_perms; allow apmd_t self:unix_dgram_socket create_socket_perms;