1 |
commit: f32eef0d86cbdfc1f28a91528c365c9607f5e268 |
2 |
Author: Jason Zaman <jason <AT> perfinion <DOT> com> |
3 |
AuthorDate: Sun Sep 10 13:21:05 2017 +0000 |
4 |
Commit: Jason Zaman <perfinion <AT> gentoo <DOT> org> |
5 |
CommitDate: Sun Sep 10 13:21:05 2017 +0000 |
6 |
URL: https://gitweb.gentoo.org/proj/hardened-refpolicy.git/commit/?id=f32eef0d |
7 |
|
8 |
modutils: allow kmod map perms |
9 |
|
10 |
policy/modules/system/modutils.te | 1 + |
11 |
1 file changed, 1 insertion(+) |
12 |
|
13 |
diff --git a/policy/modules/system/modutils.te b/policy/modules/system/modutils.te |
14 |
index baa75129..297a2e42 100644 |
15 |
--- a/policy/modules/system/modutils.te |
16 |
+++ b/policy/modules/system/modutils.te |
17 |
@@ -50,6 +50,7 @@ filetrans_add_pattern(kmod_t, modules_object_t, modules_dep_t, file) |
18 |
create_files_pattern(kmod_t, modules_object_t, modules_dep_t) |
19 |
delete_files_pattern(kmod_t, modules_object_t, modules_dep_t) |
20 |
allow kmod_t kmod_tmpfiles_conf_t:file manage_file_perms; |
21 |
+allow kmod_t { modules_dep_t modules_object_t }:file map; |
22 |
|
23 |
can_exec(kmod_t, kmod_exec_t) |