]> git.ipfire.org Git - people/stevee/selinux-policy.git/commitdiff
Allow swat_t to connect and read/write nmbd_t sock_file
authorDan Walsh <dwalsh@redhat.com>
Sat, 3 Dec 2011 16:21:46 +0000 (11:21 -0500)
committerDan Walsh <dwalsh@redhat.com>
Sat, 3 Dec 2011 16:21:46 +0000 (11:21 -0500)
policy/modules/services/samba.te

index bac0112b41593f479b90a2f98302d1f500aa5cdc..5d2dfe7910ea05035d2966aa5f9cc46cd7bca43b 100644 (file)
@@ -696,6 +696,7 @@ allow swat_t nmbd_t:process { signal signull };
 allow nmbd_t swat_t:process signal;
 
 read_files_pattern(swat_t, nmbd_var_run_t, nmbd_var_run_t)
+stream_connect_pattern(swat_t, nmbd_var_run_t, nmbd_var_run_t, nmbd_t)
 
 allow swat_t smbd_port_t:tcp_socket name_bind;