selinux-policy/allow-ipmievd-to-read-the-process-state-proc-pid-of-.patch

27 lines
785 B
Diff
Raw Normal View History

2020-07-27 09:36:04 +08:00
From c0112cf106c1a8bc1a1e9497c025185dcb08b398 Mon Sep 17 00:00:00 2001
2020-06-04 20:48:55 +08:00
From: guoxiaoqi <guoxiaoqi2@huawei.com>
2020-07-27 09:36:04 +08:00
Date: Thu, 16 Jul 2020 17:27:24 +0800
2020-06-04 20:48:55 +08:00
Subject: [PATCH] allow ipmievd to read the process state (/proc/pid) of init
Signed-off-by: guoxiaoqi <guoxiaoqi2@huawei.com>
---
policy/modules/contrib/ipmievd.te | 2 ++
1 file changed, 2 insertions(+)
diff --git a/policy/modules/contrib/ipmievd.te b/policy/modules/contrib/ipmievd.te
2020-07-27 09:36:04 +08:00
index 286165f..ecefff4 100644
2020-06-04 20:48:55 +08:00
--- a/policy/modules/contrib/ipmievd.te
+++ b/policy/modules/contrib/ipmievd.te
2020-07-27 09:36:04 +08:00
@@ -52,6 +52,8 @@ dev_rw_watchdog(ipmievd_t)
2020-06-04 20:48:55 +08:00
files_read_kernel_modules(ipmievd_t)
files_map_kernel_modules(ipmievd_t)
+init_read_state(ipmievd_t)
+
logging_send_syslog_msg(ipmievd_t)
miscfiles_read_certs(ipmievd_t)
--
1.8.3.1