# for /var/lib/logrotate.status and /var/lib/logcheck
create_dirs_pattern(logrotate_t, logrotate_var_lib_t, logrotate_var_lib_t)
manage_files_pattern(logrotate_t, logrotate_var_lib_t, logrotate_var_lib_t)
+read_lnk_files_pattern(logrotate_t, logrotate_var_lib_t, logrotate_var_lib_t)
files_var_lib_filetrans(logrotate_t, logrotate_var_lib_t, file)
kernel_read_system_state(logrotate_t)
gen_require(`
attribute virt_image_type, virt_domain;
attribute virt_tmpfs_type;
+ attribute virt_ptynode;
')
type $1_t, virt_domain;
mcs_untrusted_proc($1_t)
role system_r types $1_t;
- type $1_devpts_t;
+ type $1_devpts_t, virt_ptynode;
term_pty($1_devpts_t)
type $1_tmp_t;
#
attribute virsh_transition_domain;
+attribute virt_ptynode;
## <desc>
## <p>
manage_lnk_files_pattern(virtd_t, virt_image_type, virt_image_type)
allow virtd_t virt_image_type:file relabel_file_perms;
allow virtd_t virt_image_type:blk_file relabel_blk_file_perms;
+allow virtd_t virt_ptynode:chr_file { read write };
manage_dirs_pattern(virtd_t, virt_tmp_t, virt_tmp_t)
manage_files_pattern(virtd_t, virt_tmp_t, virt_tmp_t)