]> git.ipfire.org Git - people/stevee/selinux-policy.git/commitdiff
Allow mysqld_safe to delete the mysql_db_t sock_file
authorDan Walsh <dwalsh@redhat.com>
Tue, 6 Dec 2011 20:48:58 +0000 (15:48 -0500)
committerDan Walsh <dwalsh@redhat.com>
Tue, 6 Dec 2011 20:48:58 +0000 (15:48 -0500)
policy/modules/services/mysql.te

index 8fcabd8aab4075aee01702c272dfa7b054118554..2f51d5ad303a8299f74c894bdbc4681531900e5a 100644 (file)
@@ -162,6 +162,7 @@ allow mysqld_safe_t self:process { setsched getsched setrlimit };
 allow mysqld_safe_t self:fifo_file rw_fifo_file_perms;
 
 read_lnk_files_pattern(mysqld_safe_t, mysqld_db_t, mysqld_db_t)
+delete_sock_files_pattern(mysqld_safe_t, mysqld_db_t, mysqld_db_t)
 
 domtrans_pattern(mysqld_safe_t, mysqld_exec_t, mysqld_t)