openvswitch/0002-Remove-unsupported-permission-names.patch

16 lines
756 B
Diff
Raw Normal View History

2020-09-09 15:40:55 +08:00
diff --git a/selinux/openvswitch-custom.te.in b/selinux/openvswitch-custom.te.in
index beb0ab0d6..9f51f604e 100644
2020-09-09 15:40:55 +08:00
--- a/selinux/openvswitch-custom.te.in
+++ b/selinux/openvswitch-custom.te.in
@@ -49,8 +49,8 @@ require {
class fifo_file { getattr read write append ioctl lock open };
class filesystem getattr;
class lnk_file { read open };
- class netlink_audit_socket { create nlmsg_relay audit_write read write };
- class netlink_netfilter_socket { create nlmsg_relay audit_write read write };
+ class netlink_audit_socket { create nlmsg_relay read write };
+ class netlink_netfilter_socket { create read write };
2020-09-09 15:40:55 +08:00
@begin_dpdk@
class netlink_rdma_socket { setopt bind create };
2020-09-09 15:40:55 +08:00
@end_dpdk@