Gentoo Archives: gentoo-commits

From: Jason Zaman <perfinion@g.o>
To: gentoo-commits@l.g.o
Subject: [gentoo-commits] proj/hardened-refpolicy:master commit in: policy/modules/services/
Date: Sun, 27 Feb 2022 02:52:46
Message-Id: 1645927997.ea8252c7f327f34621e7d81da48fae7b7a5aede9.perfinion@gentoo
1 commit: ea8252c7f327f34621e7d81da48fae7b7a5aede9
2 Author: Chris PeBenito <pebenito <AT> ieee <DOT> org>
3 AuthorDate: Wed Feb 16 12:03:34 2022 +0000
4 Commit: Jason Zaman <perfinion <AT> gentoo <DOT> org>
5 CommitDate: Sun Feb 27 02:13:17 2022 +0000
6 URL: https://gitweb.gentoo.org/proj/hardened-refpolicy.git/commit/?id=ea8252c7
7
8 postfix, spamassassin: Fix missed type renames after alias removals.
9
10 Signed-off-by: Chris PeBenito <pebenito <AT> ieee.org>
11 Signed-off-by: Jason Zaman <perfinion <AT> gentoo.org>
12
13 policy/modules/services/postfix.if | 4 ++--
14 policy/modules/services/spamassassin.if | 8 ++++----
15 2 files changed, 6 insertions(+), 6 deletions(-)
16
17 diff --git a/policy/modules/services/postfix.if b/policy/modules/services/postfix.if
18 index 42b96b36..847022bf 100644
19 --- a/policy/modules/services/postfix.if
20 +++ b/policy/modules/services/postfix.if
21 @@ -683,13 +683,13 @@ interface(`postfix_admin',`
22 type postfix_initrc_exec_t, postfix_prng_t, postfix_etc_t;
23 type postfix_data_t, postfix_runtime_t, postfix_public_t;
24 type postfix_private_t, postfix_map_tmp_t, postfix_exec_t;
25 - type postfix_keytab_t, postfix_t;
26 + type postfix_keytab_t, postfix_master_t;
27 ')
28
29 allow $1 postfix_domain:process { ptrace signal_perms };
30 ps_process_pattern($1, postfix_domain)
31
32 - init_startstop_service($1, $2, postfix_t, postfix_initrc_exec_t)
33 + init_startstop_service($1, $2, postfix_master_t, postfix_initrc_exec_t)
34
35 files_search_etc($1)
36 admin_pattern($1, { postfix_prng_t postfix_etc_t postfix_exec_t postfix_keytab_t })
37
38 diff --git a/policy/modules/services/spamassassin.if b/policy/modules/services/spamassassin.if
39 index 9fbae73d..b530a76f 100644
40 --- a/policy/modules/services/spamassassin.if
41 +++ b/policy/modules/services/spamassassin.if
42 @@ -72,10 +72,10 @@ template(`spamassassin_role',`
43 #
44 interface(`spamassassin_run_update',`
45 gen_require(`
46 - type spamd_gpg_t, spamd_update_exec_t, spamd_update_t;
47 + type spamd_update_t, spamd_update_exec_t, spamd_update_t;
48 ')
49
50 - role $2 types { spamd_gpg_t spamd_update_t };
51 + role $2 types { spamd_update_t spamd_update_t };
52 domtrans_pattern($1, spamd_update_exec_t, spamd_update_t)
53 ')
54
55 @@ -476,10 +476,10 @@ interface(`spamassassin_admin',`
56 type spamd_t, spamd_tmp_t, spamd_log_t;
57 type spamd_spool_t, spamd_var_lib_t, spamd_runtime_t;
58 type spamd_initrc_exec_t, spamassassin_unit_t;
59 - type spamd_gpg_t, spamd_update_t, spamd_update_tmp_t;
60 + type spamd_update_t, spamd_update_t, spamd_update_tmp_t;
61 ')
62
63 - admin_process_pattern($1, { spamd_t spamd_gpg_t spamd_update_t })
64 + admin_process_pattern($1, { spamd_t spamd_update_t spamd_update_t })
65
66 init_startstop_service($1, $2, spamd_t, spamd_initrc_exec_t, spamassassin_unit_t)