aboutsummaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorSven Vermeulen <sven.vermeulen@siphos.be>2013-05-01 21:31:52 +0200
committerSven Vermeulen <sven.vermeulen@siphos.be>2013-05-01 21:31:52 +0200
commit17ece7e8acbfed3ad56d7ab1e3270df54c4e5bd4 (patch)
tree1906b2bf3d4d82d2879ce17c016891df723e3d6b
parentSwitch to trivnet1 port instead of the more generic unreserved port (diff)
downloadhardened-refpolicy-17ece7e8acbfed3ad56d7ab1e3270df54c4e5bd4.tar.gz
hardened-refpolicy-17ece7e8acbfed3ad56d7ab1e3270df54c4e5bd4.tar.bz2
hardened-refpolicy-17ece7e8acbfed3ad56d7ab1e3270df54c4e5bd4.zip
Meh, cannot append at end, order is important
-rw-r--r--policy/modules/kernel/corenetwork.te.in5
1 files changed, 1 insertions, 4 deletions
diff --git a/policy/modules/kernel/corenetwork.te.in b/policy/modules/kernel/corenetwork.te.in
index d712240a..0bdd1d58 100644
--- a/policy/modules/kernel/corenetwork.te.in
+++ b/policy/modules/kernel/corenetwork.te.in
@@ -263,6 +263,7 @@ network_port(tor, tcp,6969,s0, tcp,9001,s0, tcp,9030,s0, tcp,9050,s0, tcp,9051,s
network_port(traceroute, udp,64000-64010,s0)
network_port(transproxy, tcp,8081,s0)
network_port(trisoap, tcp,10200,s0, udp,10200,s0)
+network_port(trivnet1, tcp, 8200, s0, udp, 8200, s0)
network_port(ups, tcp,3493,s0)
network_port(utcpserver) # no defined portcon
network_port(uucpd, tcp,540,s0)
@@ -350,7 +351,3 @@ allow corenet_unconfined_type port_type:udp_socket { send_msg recv_msg };
# Bind to any network address.
allow corenet_unconfined_type port_type:{ tcp_socket udp_socket rawip_socket } name_bind;
allow corenet_unconfined_type node_type:{ tcp_socket udp_socket rawip_socket } node_bind;
-
-ifdef(`distro_gentoo',`
-network_port(trivnet1, tcp,8200,s0, udp,8200,s0)
-')