Gentoo Archives: gentoo-commits

From: Sven Vermeulen <sven.vermeulen@××××××.be>
To: gentoo-commits@l.g.o
Subject: [gentoo-commits] proj/hardened-refpolicy:master commit in: policy/modules/contrib/
Date: Thu, 27 Sep 2012 18:07:35
Message-Id: 1348768520.27b85a37655b2cf94063bd6e93cee2ef5657daec.SwifT@gentoo
1 commit: 27b85a37655b2cf94063bd6e93cee2ef5657daec
2 Author: Dominick Grift <dominick.grift <AT> gmail <DOT> com>
3 AuthorDate: Thu Sep 27 08:30:13 2012 +0000
4 Commit: Sven Vermeulen <sven.vermeulen <AT> siphos <DOT> be>
5 CommitDate: Thu Sep 27 17:55:20 2012 +0000
6 URL: http://git.overlays.gentoo.org/gitweb/?p=proj/hardened-refpolicy.git;a=commit;h=27b85a37
7
8 Modify dbadm boolean descriptions
9
10 Signed-off-by: Dominick Grift <dominick.grift <AT> gmail.com>
11 Signed-off-by: Sven Vermeulen <sven.vermeulen <AT> siphos.be>
12
13 ---
14 policy/modules/contrib/dbadm.if | 2 +-
15 policy/modules/contrib/dbadm.te | 18 ++++++++++--------
16 2 files changed, 11 insertions(+), 9 deletions(-)
17
18 diff --git a/policy/modules/contrib/dbadm.if b/policy/modules/contrib/dbadm.if
19 index 56f2af7..d9ed651 100644
20 --- a/policy/modules/contrib/dbadm.if
21 +++ b/policy/modules/contrib/dbadm.if
22 @@ -1,4 +1,4 @@
23 -## <summary>Database administrator role</summary>
24 +## <summary>Database administrator role.</summary>
25
26 ########################################
27 ## <summary>
28
29 diff --git a/policy/modules/contrib/dbadm.te b/policy/modules/contrib/dbadm.te
30 index 1875064..0e74996 100644
31 --- a/policy/modules/contrib/dbadm.te
32 +++ b/policy/modules/contrib/dbadm.te
33 @@ -1,4 +1,4 @@
34 -policy_module(dbadm, 1.0.0)
35 +policy_module(dbadm, 1.0.1)
36
37 ########################################
38 #
39 @@ -6,16 +6,18 @@ policy_module(dbadm, 1.0.0)
40 #
41
42 ## <desc>
43 -## <p>
44 -## Allow dbadm to manage files in users home directories
45 -## </p>
46 +## <p>
47 +## Determine whether dbadm can manage
48 +## files in users home directories.
49 +## </p>
50 ## </desc>
51 gen_tunable(dbadm_manage_user_files, false)
52
53 ## <desc>
54 -## <p>
55 -## Allow dbadm to read files in users home directories
56 -## </p>
57 +## <p>
58 +## Determine whether dbadm can read
59 +## files in users home directories.
60 +## </p>
61 ## </desc>
62 gen_tunable(dbadm_read_user_files, false)
63
64 @@ -25,7 +27,7 @@ userdom_base_user_template(dbadm)
65
66 ########################################
67 #
68 -# database admin local policy
69 +# Local policy
70 #
71
72 allow dbadm_t self:capability { dac_override dac_read_search sys_ptrace };