From 2650ca57ec14d66f2c091b660575173e1e0642e8 Mon Sep 17 00:00:00 2001 From: Chris PeBenito Date: Jan 07 2010 14:01:10 +0000 Subject: Tftp patch from Dan Walsh. --- diff --git a/policy/modules/services/tftp.fc b/policy/modules/services/tftp.fc index 72274cd..25eee43 100644 --- a/policy/modules/services/tftp.fc +++ b/policy/modules/services/tftp.fc @@ -5,4 +5,4 @@ /tftpboot -d gen_context(system_u:object_r:tftpdir_t,s0) /tftpboot/.* gen_context(system_u:object_r:tftpdir_t,s0) -/var/lib/tftpboot(/.*)? gen_context(system_u:object_r:tftpdir_t,s0) +/var/lib/tftpboot(/.*)? gen_context(system_u:object_r:tftpdir_rw_t,s0) diff --git a/policy/modules/services/tftp.if b/policy/modules/services/tftp.if index 2cbde68..65d53fc 100644 --- a/policy/modules/services/tftp.if +++ b/policy/modules/services/tftp.if @@ -20,7 +20,7 @@ interface(`tftp_read_content',` ######################################## ## -## All of the rules required to administrate +## All of the rules required to administrate ## an tftp environment ## ## diff --git a/policy/modules/services/tftp.te b/policy/modules/services/tftp.te index 04ec94e..c6f45cc 100644 --- a/policy/modules/services/tftp.te +++ b/policy/modules/services/tftp.te @@ -1,5 +1,5 @@ -policy_module(tftp, 1.11.0) +policy_module(tftp, 1.11.1) ######################################## # @@ -93,7 +93,7 @@ userdom_dontaudit_search_user_home_dirs(tftpd_t) tunable_policy(`tftp_anon_write',` miscfiles_manage_public_files(tftpd_t) -') +') optional_policy(` inetd_udp_service_domain(tftpd_t, tftpd_exec_t)