1 |
commit: c67b1ee5089ea859ab1560ae3ff43d3e731151d9 |
2 |
Author: Amadeusz Sławiński <amade <AT> asmblr <DOT> net> |
3 |
AuthorDate: Tue Oct 17 20:39:17 2017 +0000 |
4 |
Commit: Jason Zaman <perfinion <AT> gentoo <DOT> org> |
5 |
CommitDate: Sun Oct 29 13:57:28 2017 +0000 |
6 |
URL: https://gitweb.gentoo.org/proj/hardened-refpolicy.git/commit/?id=c67b1ee5 |
7 |
|
8 |
lvm: allow map perms on lvm_etc_t |
9 |
|
10 |
Signed-off-by: Amadeusz Sławiński <amade <AT> asmblr.net> |
11 |
|
12 |
policy/modules/system/lvm.te | 1 + |
13 |
1 file changed, 1 insertion(+) |
14 |
|
15 |
diff --git a/policy/modules/system/lvm.te b/policy/modules/system/lvm.te |
16 |
index f75f2645..7c601fad 100644 |
17 |
--- a/policy/modules/system/lvm.te |
18 |
+++ b/policy/modules/system/lvm.te |
19 |
@@ -211,6 +211,7 @@ manage_sock_files_pattern(lvm_t, lvm_var_run_t, lvm_var_run_t) |
20 |
files_pid_filetrans(lvm_t, lvm_var_run_t, { file sock_file }) |
21 |
|
22 |
read_files_pattern(lvm_t, lvm_etc_t, lvm_etc_t) |
23 |
+allow lvm_t lvm_etc_t:file map; |
24 |
read_lnk_files_pattern(lvm_t, lvm_etc_t, lvm_etc_t) |
25 |
# Write to /etc/lvm, /etc/lvmtab, /etc/lvmtab.d |
26 |
manage_files_pattern(lvm_t, lvm_metadata_t, lvm_metadata_t) |