1 |
commit: c50f5c45160fd4d53ed545a8610ca58b266e5a94 |
2 |
Author: Dominick Grift <dominick.grift <AT> gmail <DOT> com> |
3 |
AuthorDate: Sat Nov 9 09:44:56 2013 +0000 |
4 |
Commit: Sven Vermeulen <swift <AT> gentoo <DOT> org> |
5 |
CommitDate: Fri Dec 6 17:30:05 2013 +0000 |
6 |
URL: http://git.overlays.gentoo.org/gitweb/?p=proj/hardened-refpolicy.git;a=commit;h=c50f5c45 |
7 |
|
8 |
sysnetwork: dhcpc: networkmanager interface calls from Fedora. In Debian i was able to confirm the need for networkmanager_manage_lib_files(dhcpc_t) since dhclient reads /var/lib/NetworkManager/dhclient-eth0.conf |
9 |
|
10 |
Signed-off-by: Dominick Grift <dominick.grift <AT> gmail.com> |
11 |
|
12 |
--- |
13 |
policy/modules/system/sysnetwork.te | 7 +++++++ |
14 |
1 file changed, 7 insertions(+) |
15 |
|
16 |
diff --git a/policy/modules/system/sysnetwork.te b/policy/modules/system/sysnetwork.te |
17 |
index f19fb4b..9613897 100644 |
18 |
--- a/policy/modules/system/sysnetwork.te |
19 |
+++ b/policy/modules/system/sysnetwork.te |
20 |
@@ -203,6 +203,13 @@ optional_policy(` |
21 |
') |
22 |
|
23 |
optional_policy(` |
24 |
+ networkmanager_domtrans(dhcpc_t) |
25 |
+ networkmanager_read_pid_files(dhcpc_t) |
26 |
+ networkmanager_manage_lib_files(dhcpc_t) |
27 |
+ networkmanager_stream_connect(dhcpc_t) |
28 |
+') |
29 |
+ |
30 |
+optional_policy(` |
31 |
nis_read_ypbind_pid(dhcpc_t) |
32 |
') |