aboutsummaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorChris PeBenito <pebenito@ieee.org>2017-10-30 21:19:55 -0400
committerJason Zaman <jason@perfinion.com>2017-10-31 13:15:22 +0800
commite9f5151a6a5bacc2d4d45c9d5a2f7a7e32c313ef (patch)
tree7a77574f6cb43ced852b527f4176f795b7924352
parentvirt: updated perms for starting guests (diff)
downloadhardened-refpolicy-e9f5151a.tar.gz
hardened-refpolicy-e9f5151a.tar.bz2
hardened-refpolicy-e9f5151a.zip
virt: Move a line.
-rw-r--r--policy/modules/contrib/virt.te4
1 files changed, 2 insertions, 2 deletions
diff --git a/policy/modules/contrib/virt.te b/policy/modules/contrib/virt.te
index 98d510fd..5d7926dd 100644
--- a/policy/modules/contrib/virt.te
+++ b/policy/modules/contrib/virt.te
@@ -1364,13 +1364,13 @@ allow virtlogd_t virtd_t:dir list_dir_perms;
allow virtlogd_t virtd_t:file read_file_perms;
allow virtlogd_t virtd_t:lnk_file read_lnk_file_perms;
+can_exec(virtlogd_t, virtlogd_exec_t)
+
manage_files_pattern(virtlogd_t, virt_var_run_t, virtlogd_run_t)
manage_sock_files_pattern(virtlogd_t, virt_var_run_t, virtlogd_run_t)
filetrans_pattern(virtlogd_t, virt_var_run_t, virtlogd_run_t, sock_file)
files_pid_filetrans(virtlogd_t, virtlogd_run_t, file)
-can_exec(virtlogd_t, virtlogd_exec_t)
-
kernel_read_system_state(virtlogd_t)
files_read_etc_files(virtlogd_t)