]> git.ipfire.org Git - people/stevee/selinux-policy.git/commitdiff
Allow accountsd to read /sys
authorMiroslav Grepl <mgrepl@redhat.com>
Mon, 14 Nov 2011 14:45:28 +0000 (14:45 +0000)
committerMiroslav Grepl <mgrepl@redhat.com>
Mon, 14 Nov 2011 14:45:28 +0000 (14:45 +0000)
policy/modules/apps/firewallgui.te
policy/modules/services/accountsd.te

index bc0ba866f0d0cf860b14a6c455f91cae11337c4b..86b640d4d3545f5f71662b32fef8a769d6f4d56d 100644 (file)
@@ -43,8 +43,6 @@ files_read_usr_files(firewallgui_t)
 files_search_kernel_modules(firewallgui_t)
 files_list_kernel_modules(firewallgui_t)
 
-seutil_read_config(firewallgui_t)
-
 auth_use_nsswitch(firewallgui_t)
 
 miscfiles_read_localization(firewallgui_t)
index a538582f215dc3090eb56b868bf1f8ddde6e5546..6ede64dac524b83b0271f264d572294b15ae428b 100644 (file)
@@ -31,6 +31,8 @@ kernel_read_kernel_sysctls(accountsd_t)
 
 corecmd_exec_bin(accountsd_t)
 
+dev_read_sysfs(accountsd_t)
+
 files_read_usr_files(accountsd_t)
 files_read_mnt_files(accountsd_t)