]> git.ipfire.org Git - people/stevee/selinux-policy.git/commitdiff
Allow radius to communicate with postgresql
authorDan Walsh <dwalsh@redhat.com>
Tue, 28 Dec 2010 20:40:34 +0000 (15:40 -0500)
committerDan Walsh <dwalsh@redhat.com>
Tue, 28 Dec 2010 20:40:34 +0000 (15:40 -0500)
Telepath sofia needs to bind to any udp port

policy/modules/apps/telepathy.te
policy/modules/services/radius.te

index 2ace3995f8c64dafb47e95a7ba04cac821e57c26..24f80371fd70916004de8709b5dcf022e24d3723 100644 (file)
@@ -246,6 +246,7 @@ allow telepathy_sofiasip_t self:tcp_socket { listen };
 
 corenet_sendrecv_sip_client_packets(telepathy_sofiasip_t)
 corenet_tcp_connect_sip_port(telepathy_sofiasip_t)
+corenet_udp_bind_all_ports(telepathy_sofiasip_t)
 
 kernel_request_load_module(telepathy_sofiasip_t)
 
index b1ed1bf4d4ead0cbd1aa8d322db0573c7dd7152d..21e2d956fdaca4f2f739c576469504a29f06c414 100644 (file)
@@ -77,6 +77,7 @@ corenet_udp_sendrecv_all_ports(radiusd_t)
 corenet_udp_bind_generic_node(radiusd_t)
 corenet_udp_bind_radacct_port(radiusd_t)
 corenet_udp_bind_radius_port(radiusd_t)
+corenet_tcp_connect_postgresql_port(radiusd_t)
 corenet_tcp_connect_mysqld_port(radiusd_t)
 corenet_tcp_connect_snmp_port(radiusd_t)
 corenet_sendrecv_radius_server_packets(radiusd_t)