diff options
author | Sven Vermeulen <sven.vermeulen@siphos.be> | 2013-05-01 21:31:52 +0200 |
---|---|---|
committer | Sven Vermeulen <sven.vermeulen@siphos.be> | 2013-05-01 21:31:52 +0200 |
commit | 17ece7e8acbfed3ad56d7ab1e3270df54c4e5bd4 (patch) | |
tree | 1906b2bf3d4d82d2879ce17c016891df723e3d6b | |
parent | Switch to trivnet1 port instead of the more generic unreserved port (diff) | |
download | hardened-refpolicy-17ece7e8acbfed3ad56d7ab1e3270df54c4e5bd4.tar.gz hardened-refpolicy-17ece7e8acbfed3ad56d7ab1e3270df54c4e5bd4.tar.bz2 hardened-refpolicy-17ece7e8acbfed3ad56d7ab1e3270df54c4e5bd4.zip |
Meh, cannot append at end, order is important
-rw-r--r-- | policy/modules/kernel/corenetwork.te.in | 5 |
1 files changed, 1 insertions, 4 deletions
diff --git a/policy/modules/kernel/corenetwork.te.in b/policy/modules/kernel/corenetwork.te.in index d712240a..0bdd1d58 100644 --- a/policy/modules/kernel/corenetwork.te.in +++ b/policy/modules/kernel/corenetwork.te.in @@ -263,6 +263,7 @@ network_port(tor, tcp,6969,s0, tcp,9001,s0, tcp,9030,s0, tcp,9050,s0, tcp,9051,s network_port(traceroute, udp,64000-64010,s0) network_port(transproxy, tcp,8081,s0) network_port(trisoap, tcp,10200,s0, udp,10200,s0) +network_port(trivnet1, tcp, 8200, s0, udp, 8200, s0) network_port(ups, tcp,3493,s0) network_port(utcpserver) # no defined portcon network_port(uucpd, tcp,540,s0) @@ -350,7 +351,3 @@ allow corenet_unconfined_type port_type:udp_socket { send_msg recv_msg }; # Bind to any network address. allow corenet_unconfined_type port_type:{ tcp_socket udp_socket rawip_socket } name_bind; allow corenet_unconfined_type node_type:{ tcp_socket udp_socket rawip_socket } node_bind; - -ifdef(`distro_gentoo',` -network_port(trivnet1, tcp,8200,s0, udp,8200,s0) -') |