From c17ad385ac76dfd576b29b06351018d3e03a9c92 Mon Sep 17 00:00:00 2001 From: Jeremy Solt Date: Wed, 1 Sep 2010 10:38:04 -0400 Subject: [PATCH] openct patch from Dan Walsh --- policy/modules/services/openct.te | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/policy/modules/services/openct.te b/policy/modules/services/openct.te index 4996f62ae..538ddbcc5 100644 --- a/policy/modules/services/openct.te +++ b/policy/modules/services/openct.te @@ -20,9 +20,10 @@ files_pid_file(openct_var_run_t) dontaudit openct_t self:capability sys_tty_config; allow openct_t self:process signal_perms; +manage_dirs_pattern(openct_t, openct_var_run_t, openct_var_run_t) manage_files_pattern(openct_t, openct_var_run_t, openct_var_run_t) manage_sock_files_pattern(openct_t, openct_var_run_t, openct_var_run_t) -files_pid_filetrans(openct_t, openct_var_run_t, { file sock_file }) +files_pid_filetrans(openct_t, openct_var_run_t, { dir file sock_file }) kernel_read_kernel_sysctls(openct_t) kernel_list_proc(openct_t)