Fix missed deprecated interface usage from the cert patch. Add back a few rolecap tags.

This commit is contained in:
Chris PeBenito 2010-09-10 11:31:00 -04:00
parent 8340621920
commit e9d6dfb8b1
5 changed files with 8 additions and 5 deletions

View File

@ -31,7 +31,7 @@ auth_var_filetrans_cache(certwatch_t)
logging_send_syslog_msg(certwatch_t)
miscfiles_read_certs(certwatch_t)
miscfiles_read_generic_certs(certwatch_t)
miscfiles_read_localization(certwatch_t)
userdom_use_user_terminals(certwatch_t)

View File

@ -541,7 +541,7 @@ fs_search_auto_mountpoints(evolution_server_t)
miscfiles_read_localization(evolution_server_t)
# Look in /etc/pki
miscfiles_read_certs(evolution_server_t)
miscfiles_read_generic_certs(evolution_server_t)
# Talk to ldap (address book)
sysnet_read_config(evolution_server_t)

View File

@ -67,5 +67,5 @@ auth_use_nsswitch(certmaster_t)
miscfiles_read_localization(certmaster_t)
miscfiles_manage_cert_dirs(certmaster_t)
miscfiles_manage_cert_files(certmaster_t)
miscfiles_manage_generic_cert_dirs(certmaster_t)
miscfiles_manage_generic_cert_files(certmaster_t)

View File

@ -394,7 +394,7 @@ logging_read_audit_config(initrc_t)
miscfiles_read_localization(initrc_t)
# slapd needs to read cert files from its initscript
miscfiles_read_certs(initrc_t)
miscfiles_read_generic_certs(initrc_t)
modutils_read_module_config(initrc_t)
modutils_domtrans_insmod(initrc_t)

View File

@ -53,6 +53,7 @@ interface(`miscfiles_cert_type',`
## Domain allowed access.
## </summary>
## </param>
## <rolecap/>
#
interface(`miscfiles_read_all_certs',`
gen_require(`
@ -73,6 +74,7 @@ interface(`miscfiles_read_all_certs',`
## Domain allowed access.
## </summary>
## </param>
## <rolecap/>
#
interface(`miscfiles_read_generic_certs',`
gen_require(`
@ -111,6 +113,7 @@ interface(`miscfiles_manage_generic_cert_dirs',`
## Domain allowed access.
## </summary>
## </param>
## <rolecap/>
#
interface(`miscfiles_manage_generic_cert_files',`
gen_require(`