Gentoo Archives: gentoo-commits

From: Sven Vermeulen <sven.vermeulen@××××××.be>
To: gentoo-commits@l.g.o
Subject: [gentoo-commits] proj/hardened-refpolicy:master commit in: policy/modules/roles/
Date: Tue, 21 Aug 2012 17:53:37
Message-Id: 1345211109.83a680ef91510d7688db90671d59be63d01e98da.SwifT@gentoo
1 commit: 83a680ef91510d7688db90671d59be63d01e98da
2 Author: Sven Vermeulen <sven.vermeulen <AT> siphos <DOT> be>
3 AuthorDate: Thu Aug 16 18:20:53 2012 +0000
4 Commit: Sven Vermeulen <sven.vermeulen <AT> siphos <DOT> be>
5 CommitDate: Fri Aug 17 13:45:09 2012 +0000
6 URL: http://git.overlays.gentoo.org/gitweb/?p=proj/hardened-refpolicy.git;a=commit;h=83a680ef
7
8 Allow sysadm_t to administer postgresql service
9
10 Allow the sysadm_t domain to administer the postgresql service by executing the
11 postgresql init script (postgresql_initrc_exec_t) with the proper transition in
12 place.
13
14 ---
15 policy/modules/roles/sysadm.te | 5 +++++
16 1 files changed, 5 insertions(+), 0 deletions(-)
17
18 diff --git a/policy/modules/roles/sysadm.te b/policy/modules/roles/sysadm.te
19 index c7f603e..810fbc6 100644
20 --- a/policy/modules/roles/sysadm.te
21 +++ b/policy/modules/roles/sysadm.te
22 @@ -292,6 +292,11 @@ optional_policy(`
23 ')
24
25 optional_policy(`
26 + postgresql_admin(sysadm_t, sysadm_r)
27 + postgresql_exec(sysadm_t)
28 +')
29 +
30 +optional_policy(`
31 pyzor_role(sysadm_r, sysadm_t)
32 ')