HCoop
/
jackhill
/
guix
/
guix.git
/ commitdiff
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
| commitdiff |
tree
raw
|
patch
| inline |
side by side
(parent:
73817f7
)
etc: Add more SELinux permissions for the daemon.
author
Marius Bakke
<marius@gnu.org>
Thu, 10 Dec 2020 22:42:48 +0000
(23:42 +0100)
committer
Marius Bakke
<marius@gnu.org>
Thu, 10 Dec 2020 22:48:42 +0000
(23:48 +0100)
* etc/guix-daemon.cil.in (guix_daemon): Permit file write, getattr, link and
unlink for the guix_daemon_exec_t type.
etc/guix-daemon.cil.in
patch
|
blob
|
blame
|
history
diff --git
a/etc/guix-daemon.cil.in
b/etc/guix-daemon.cil.in
index
cc8999d
..
4f52157
100644
(file)
--- a/
etc/guix-daemon.cil.in
+++ b/
etc/guix-daemon.cil.in
@@
-167,7
+167,9
@@
(process (fork execmem setrlimit setpgid setsched)))
(allow guix_daemon_t
guix_daemon_exec_t
- (file (execute execute_no_trans read open entrypoint map)))
+ (file (execute
+ execute_no_trans read write open entrypoint map
+ getattr link unlink)))
;; TODO: unknown
(allow guix_daemon_t