From fd5e40b047f7d2832fa587a88f7b0483519a4330 Mon Sep 17 00:00:00 2001 From: Luis Ressel Date: Sat, 8 Aug 2015 13:50:28 +0200 Subject: [PATCH] Mark APR build scripts as bin_t I don't know why those are in /usr/share/build-1/ instead of /usr/share/apr-0/build/ here, but it doesn't appear to be Gentoo-specific. --- policy/modules/kernel/corecommands.fc | 2 ++ 1 file changed, 2 insertions(+) diff --git a/policy/modules/kernel/corecommands.fc b/policy/modules/kernel/corecommands.fc index 958fad747..fd4fe8563 100644 --- a/policy/modules/kernel/corecommands.fc +++ b/policy/modules/kernel/corecommands.fc @@ -282,6 +282,8 @@ ifdef(`distro_gentoo',` /usr/share/ajaxterm/qweb.py.* -- gen_context(system_u:object_r:bin_t,s0) /usr/share/apr-0/build/[^/]+\.sh -- gen_context(system_u:object_r:bin_t,s0) /usr/share/apr-0/build/libtool -- gen_context(system_u:object_r:bin_t,s0) +/usr/share/build-1/[^/]+\.sh -- gen_context(system_u:object_r:bin_t,s0) +/usr/share/build-1/libtool -- gen_context(system_u:object_r:bin_t,s0) /usr/share/dayplanner/dayplanner -- gen_context(system_u:object_r:bin_t,s0) /usr/share/debconf/.+ -- gen_context(system_u:object_r:bin_t,s0) /usr/share/denyhosts/scripts(/.*)? gen_context(system_u:object_r:bin_t,s0)