aboutsummaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorJason Zaman <jason@perfinion.com>2017-05-07 11:11:50 +0800
committerJason Zaman <jason@perfinion.com>2017-05-08 01:40:29 +0800
commit6bc27759a132a8acc69946da46bb4aefce6bbaeb (patch)
tree7b5a444a8bfb843a47560e0175cbf3b342d3c267
parentRemove duplicate fcontexts that were merged upstream (diff)
downloadhardened-refpolicy-6bc27759.tar.gz
hardened-refpolicy-6bc27759.tar.bz2
hardened-refpolicy-6bc27759.zip
consolekit: allow run fifo_files
audit: type=1400 audit(1494126304.815:19): avc: denied { create } for pid=5335 comm="console-kit-dae" name="inhibit.IWBEZY.pipe" scontext=system_u:system_r:consolekit_t:s0 tcontext=system_u:object_r:consolekit_var_run_t:s0 tclass=fifo_file permissive=0
-rw-r--r--policy/modules/contrib/consolekit.te1
1 files changed, 1 insertions, 0 deletions
diff --git a/policy/modules/contrib/consolekit.te b/policy/modules/contrib/consolekit.te
index 06451dff..19d4d1b4 100644
--- a/policy/modules/contrib/consolekit.te
+++ b/policy/modules/contrib/consolekit.te
@@ -40,6 +40,7 @@ logging_log_filetrans(consolekit_t, consolekit_log_t, file)
manage_dirs_pattern(consolekit_t, consolekit_var_run_t, consolekit_var_run_t)
manage_files_pattern(consolekit_t, consolekit_var_run_t, consolekit_var_run_t)
+manage_fifo_files_pattern(consolekit_t, consolekit_var_run_t, consolekit_var_run_t)
files_pid_filetrans(consolekit_t, consolekit_var_run_t, { dir file })
kernel_read_system_state(consolekit_t)