Changeset 17

Show
Ignore:
Timestamp:
04/19/07 09:59:42 (2 years ago)
Author:
bwhalen
Message:

Update to latest repolicy so we can commit to it (20070419) and include the new modules that we forgot to last
time.

Files:

Legend:

Unmodified
Added
Removed
Modified
Copied
Moved
  • trunk/refpolicy/src/selinux-policy-clip/Changelog

    r13 r17  
     1- Move program admin template usage out of userdom_admin_user_template() to 
     2  sysadm policy in userdomain.te to fix usage of the template for third 
     3  parties. 
     4- Fix clockspeed_run_cli() declaration, it was incorrectly defined as a 
     5  template instead of an interface. 
     6 
    17* Tue Apr 17 2007 Chris PeBenito <selinux@tresys.com> - 20070417 
    28- Patch for sasl's use of kerberos from Dan Walsh. 
  • trunk/refpolicy/src/selinux-policy-clip/Rules.modular

    r11 r17  
    9292# Create a base module package 
    9393# 
    94 $(base_pkg): $(base_mod) $(base_fc) $(users_extra) $(tmpdir)/seusers $(net_contexts) 
     94$(base_pkg): $(base_mod) $(base_fc) $(users_extra) $(tmpdir)/seusers 
    9595        @echo "Creating $(NAME) base module package" 
    9696        @test -d $(builddir) || mkdir -p $(builddir) 
    97         $(verbose) $(SEMOD_PKG) -o $@ -m $(base_mod) -f $(base_fc) -u $(users_extra) -s $(tmpdir)/seusers -n $(net_contexts) 
     97        $(verbose) $(SEMOD_PKG) -o $@ -m $(base_mod) -f $(base_fc) -u $(users_extra) -s $(tmpdir)/seusers 
    9898 
    9999$(base_mod): $(base_conf) 
  • trunk/refpolicy/src/selinux-policy-clip/policy/modules/services/clockspeed.if

    r11 r17  
    4040## <rolecap/> 
    4141# 
    42 template(`clockspeed_run_cli',` 
     42interface(`clockspeed_run_cli',` 
    4343        gen_require(` 
    4444                type clockspeed_cli_t; 
  • trunk/refpolicy/src/selinux-policy-clip/policy/modules/services/xserver.te

    r13 r17  
    112112 
    113113allow xdm_t xconsole_device_t:fifo_file { getattr setattr }; 
     114 
    114115# Allow gdm to run gdm-binary 
    115116can_exec(xdm_t, xdm_exec_t) 
  • trunk/refpolicy/src/selinux-policy-clip/policy/modules/system/userdomain.if

    r13 r17  
    12261226 
    12271227        optional_policy(` 
    1228                 cron_admin_template($1,$1_t,$1_r) 
    1229         ') 
    1230  
    1231         optional_policy(` 
    1232                 ethereal_admin_template($1,$1_t,$1_r) 
    1233         ') 
    1234  
    1235         optional_policy(` 
    1236                 lpr_admin_template($1,$1_t,$1_r) 
    1237         ') 
    1238  
    1239         optional_policy(` 
    1240                 mta_admin_template($1,$1_t,$1_r) 
    1241         ') 
    1242  
    1243         optional_policy(` 
    12441228                userhelper_exec($1_t) 
    12451229        ') 
  • trunk/refpolicy/src/selinux-policy-clip/policy/modules/system/userdomain.te

    r13 r17  
    11 
    2 policy_module(userdomain,2.2.0
     2policy_module(userdomain,2.2.1
    33 
    44gen_require(` 
     
    295295 
    296296        optional_policy(` 
     297                cron_admin_template(sysadm,sysadm_t,sysadm_r) 
     298        ') 
     299 
     300        optional_policy(` 
    297301                dcc_run_cdcc(sysadm_t,sysadm_r,admin_terminal) 
    298302                dcc_run_client(sysadm_t,sysadm_r,admin_terminal) 
     
    322326        optional_policy(` 
    323327                ethereal_run_tethereal(sysadm_t,sysadm_r,admin_terminal) 
     328                ethereal_admin_template(sysadm,sysadm_t,sysadm_r) 
    324329        ') 
    325330 
     
    364369        optional_policy(` 
    365370                lpd_run_checkpc(sysadm_t,sysadm_r,admin_terminal) 
     371                lpr_admin_template(sysadm,sysadm_t,sysadm_r) 
    366372        ') 
    367373 
     
    378384        optional_policy(` 
    379385                mount_run(sysadm_t,sysadm_r,admin_terminal) 
     386        ') 
     387 
     388        optional_policy(` 
     389                mta_admin_template(sysadm,sysadm_t,sysadm_r) 
    380390        ') 
    381391