forked from pool/selinux-policy
f9eb198b55
- Update to version 20200717. Refreshed * fix_fwupd.patch * fix_hadoop.patch * fix_init.patch * fix_irqbalance.patch * fix_logrotate.patch * fix_nagios.patch * fix_networkmanager.patch * fix_postfix.patch * fix_sysnetwork.patch * fix_systemd.patch * fix_thunderbird.patch * fix_unconfined.patch * fix_unprivuser.patch * selinux-policy.spec - Added update.sh to make updating easier - Updated fix_unconfineduser.patch to allow unconfined_dbusd_t access to accountsd dbus - New patch: * fix_nis.patch - Updated patches: * fix_postfix.patch: Transition is done in distribution specific script OBS-URL: https://build.opensuse.org/request/show/821528 OBS-URL: https://build.opensuse.org/package/show/security:SELinux/selinux-policy?expand=0&rev=77
23 lines
602 B
Diff
23 lines
602 B
Diff
Index: fedora-policy/policy/modules/system/unconfined.te
|
|
===================================================================
|
|
--- fedora-policy.orig/policy/modules/system/unconfined.te
|
|
+++ fedora-policy/policy/modules/system/unconfined.te
|
|
@@ -1,5 +1,10 @@
|
|
policy_module(unconfined, 3.5.0)
|
|
|
|
+require {
|
|
+ type var_run_t;
|
|
+ type net_conf_t;
|
|
+}
|
|
+
|
|
########################################
|
|
#
|
|
# Declarations
|
|
@@ -39,3 +44,6 @@ optional_policy(`
|
|
optional_policy(`
|
|
container_runtime_domtrans(unconfined_service_t)
|
|
')
|
|
+
|
|
+filetrans_pattern(unconfined_service_t, var_run_t, net_conf_t, dir)
|
|
+
|