summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorvakwetu <vakwetu@c9f7a03b-bd48-0410-a16d-cbbf54688b0b>2011-09-27 18:07:17 +0000
committervakwetu <vakwetu@c9f7a03b-bd48-0410-a16d-cbbf54688b0b>2011-09-27 18:07:17 +0000
commit8f8c2e5f8918b5dba1a16a5041c3f048377a1b01 (patch)
tree91100e90b645d919972b27ea79e65c46ebe40d5e
parenta36d206cd30823293496c9e1853cf2c0ad4ae32a (diff)
downloadpki-8f8c2e5f8918b5dba1a16a5041c3f048377a1b01.tar.gz
pki-8f8c2e5f8918b5dba1a16a5041c3f048377a1b01.tar.xz
pki-8f8c2e5f8918b5dba1a16a5041c3f048377a1b01.zip
Resolves #739708 - pki-selinux lacks rules in F16
git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@2228 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
-rw-r--r--pki/base/selinux/src/pki.if4
-rw-r--r--pki/base/selinux/src/pki.te2
2 files changed, 5 insertions, 1 deletions
diff --git a/pki/base/selinux/src/pki.if b/pki/base/selinux/src/pki.if
index cba0f91a..317fb22b 100644
--- a/pki/base/selinux/src/pki.if
+++ b/pki/base/selinux/src/pki.if
@@ -130,6 +130,7 @@ template(`pki_ca_template',`
corecmd_search_bin($1_t)
dev_list_sysfs($1_t)
+ dev_read_sysfs($1_t)
dev_read_rand($1_t)
dev_read_urand($1_t)
@@ -196,6 +197,9 @@ template(`pki_ca_template',`
#reverse proxy
corenet_tcp_connect_dogtag_port($1_t)
+ #connect to ldap
+ corenet_tcp_connect_ldap_port($1_t)
+
')
########################################
diff --git a/pki/base/selinux/src/pki.te b/pki/base/selinux/src/pki.te
index 2261af4b..3d9a0483 100644
--- a/pki/base/selinux/src/pki.te
+++ b/pki/base/selinux/src/pki.te
@@ -1,4 +1,4 @@
-policy_module(pki,1.0.25)
+policy_module(pki,1.0.26)
attribute pki_ca_config;
attribute pki_ca_executable;