1 |
commit: 2b170190d1cf06ef79112b72ebf226799de128de |
2 |
Author: Jason Zaman <perfinion <AT> gentoo <DOT> org> |
3 |
AuthorDate: Sat Nov 20 22:48:37 2021 +0000 |
4 |
Commit: Jason Zaman <perfinion <AT> gentoo <DOT> org> |
5 |
CommitDate: Sun Nov 21 22:38:58 2021 +0000 |
6 |
URL: https://gitweb.gentoo.org/proj/hardened-refpolicy.git/commit/?id=2b170190 |
7 |
|
8 |
dbus: Add filetrans for /tmp/dbus-* session socket |
9 |
|
10 |
Signed-off-by: Jason Zaman <perfinion <AT> gentoo.org> |
11 |
|
12 |
policy/modules/services/dbus.te | 3 ++- |
13 |
1 file changed, 2 insertions(+), 1 deletion(-) |
14 |
|
15 |
diff --git a/policy/modules/services/dbus.te b/policy/modules/services/dbus.te |
16 |
index 7535509d..96983349 100644 |
17 |
--- a/policy/modules/services/dbus.te |
18 |
+++ b/policy/modules/services/dbus.te |
19 |
@@ -253,7 +253,8 @@ userdom_user_home_dir_filetrans(session_bus_type, session_dbusd_home_t, dir, ".d |
20 |
|
21 |
manage_dirs_pattern(session_bus_type, session_dbusd_tmp_t, session_dbusd_tmp_t) |
22 |
manage_files_pattern(session_bus_type, session_dbusd_tmp_t, session_dbusd_tmp_t) |
23 |
-files_tmp_filetrans(session_bus_type, session_dbusd_tmp_t, { dir file }) |
24 |
+manage_sock_files_pattern(session_bus_type, session_dbusd_tmp_t, session_dbusd_tmp_t) |
25 |
+files_tmp_filetrans(session_bus_type, session_dbusd_tmp_t, { dir file sock_file }) |
26 |
|
27 |
manage_dirs_pattern(session_bus_type, session_dbusd_runtime_t, session_dbusd_runtime_t) |
28 |
manage_files_pattern(session_bus_type, session_dbusd_runtime_t, session_dbusd_runtime_t) |