diff --git a/policy/modules/kernel/terminal.if b/policy/modules/kernel/terminal.if index 56ddd99..a905c0a 100644 --- a/policy/modules/kernel/terminal.if +++ b/policy/modules/kernel/terminal.if @@ -653,6 +653,25 @@ interface(`term_use_controlling_term',` ######################################## ## +## Do not audit attempts to get attributes +## on the pty multiplexor (/dev/ptmx). +## +## +## +## Domain to not audit. +## +## +# +interface(`term_dontaudit_getattr_ptmx',` + gen_require(` + type ptmx_t; + ') + + dontaudit $1 ptmx_t:chr_file getattr; +') + +######################################## +## ## Read and write the pty multiplexor (/dev/ptmx). ## ## diff --git a/policy/modules/kernel/terminal.te b/policy/modules/kernel/terminal.te index 9b79309..1d70a04 100644 --- a/policy/modules/kernel/terminal.te +++ b/policy/modules/kernel/terminal.te @@ -1,5 +1,5 @@ -policy_module(terminal, 1.8.0) +policy_module(terminal, 1.8.1) ######################################## #