diff options
author | Chris PeBenito <pebenito@ieee.org> | 2017-10-30 21:19:55 -0400 |
---|---|---|
committer | Jason Zaman <jason@perfinion.com> | 2017-10-31 13:15:22 +0800 |
commit | e9f5151a6a5bacc2d4d45c9d5a2f7a7e32c313ef (patch) | |
tree | 7a77574f6cb43ced852b527f4176f795b7924352 | |
parent | virt: updated perms for starting guests (diff) | |
download | hardened-refpolicy-e9f5151a.tar.gz hardened-refpolicy-e9f5151a.tar.bz2 hardened-refpolicy-e9f5151a.zip |
virt: Move a line.
-rw-r--r-- | policy/modules/contrib/virt.te | 4 |
1 files changed, 2 insertions, 2 deletions
diff --git a/policy/modules/contrib/virt.te b/policy/modules/contrib/virt.te index 98d510fd..5d7926dd 100644 --- a/policy/modules/contrib/virt.te +++ b/policy/modules/contrib/virt.te @@ -1364,13 +1364,13 @@ allow virtlogd_t virtd_t:dir list_dir_perms; allow virtlogd_t virtd_t:file read_file_perms; allow virtlogd_t virtd_t:lnk_file read_lnk_file_perms; +can_exec(virtlogd_t, virtlogd_exec_t) + manage_files_pattern(virtlogd_t, virt_var_run_t, virtlogd_run_t) manage_sock_files_pattern(virtlogd_t, virt_var_run_t, virtlogd_run_t) filetrans_pattern(virtlogd_t, virt_var_run_t, virtlogd_run_t, sock_file) files_pid_filetrans(virtlogd_t, virtlogd_run_t, file) -can_exec(virtlogd_t, virtlogd_exec_t) - kernel_read_system_state(virtlogd_t) files_read_etc_files(virtlogd_t) |