unexpand can_kerberos
This commit is contained in:
parent
a9a20ddaae
commit
c18e825f57
@ -311,12 +311,7 @@ allow initrc_t home_type:file r_file_perms;
|
|||||||
allow initrc_t udev_runtime_t:file rw_file_perms;
|
allow initrc_t udev_runtime_t:file rw_file_perms;
|
||||||
|
|
||||||
# for lsof in shutdown scripts
|
# for lsof in shutdown scripts
|
||||||
optional_policy(`kerberos.te',`
|
can_kerberos(initrc_t)
|
||||||
if (allow_kerberos) {
|
|
||||||
can_network_client(initrc_t, `kerberos_port_t')
|
|
||||||
can_resolve(initrc_t)
|
|
||||||
}
|
|
||||||
') dnl kerberos.te
|
|
||||||
dontaudit initrc_t krb5_conf_t:file write;
|
dontaudit initrc_t krb5_conf_t:file write;
|
||||||
allow initrc_t krb5_conf_t:file { getattr read };
|
allow initrc_t krb5_conf_t:file { getattr read };
|
||||||
|
|
||||||
|
Loading…
Reference in New Issue
Block a user