From 7d8fbdc06201f67119d1e1b67f718eea4d44651e Mon Sep 17 00:00:00 2001 From: Chris PeBenito Date: Fri, 23 May 2008 14:41:36 +0000 Subject: [PATCH] trunk: fix bad cifs interface. --- policy/modules/kernel/filesystem.if | 19 ------------------- policy/modules/system/userdomain.if | 2 +- 2 files changed, 1 insertion(+), 20 deletions(-) diff --git a/policy/modules/kernel/filesystem.if b/policy/modules/kernel/filesystem.if index 37f1c220..1bca75e9 100644 --- a/policy/modules/kernel/filesystem.if +++ b/policy/modules/kernel/filesystem.if @@ -776,25 +776,6 @@ interface(`fs_read_noxattr_fs_symlinks',` read_lnk_files_pattern($1,noxattrfs,noxattrfs) ') -######################################## -## -## Do not audit attempts to read -## dirs on a CIFS or SMB filesystem. -## -## -## -## Domain to not audit. -## -## -# -interface(`fs_dontaudit_list_cifs_dirs',` - gen_require(` - type cifs_t; - ') - - dontaudit $1 cifs_t:dir list_dir_perms; -') - ######################################## ## ## Do not audit attempts to read diff --git a/policy/modules/system/userdomain.if b/policy/modules/system/userdomain.if index dd2c793a..d945c3c1 100644 --- a/policy/modules/system/userdomain.if +++ b/policy/modules/system/userdomain.if @@ -202,7 +202,7 @@ template(`userdom_ro_home_template',` fs_read_cifs_named_sockets($1_t) fs_read_cifs_named_pipes($1_t) ',` - fs_dontaudit_list_cifs_dirs($1_t) + fs_dontaudit_list_cifs($1_t) fs_dontaudit_read_cifs_files($1_t) ') ')