diff --git a/policy/modules/kernel/terminal.if b/policy/modules/kernel/terminal.if index 56ddd99..a905c0a 100644 --- a/policy/modules/kernel/terminal.if +++ b/policy/modules/kernel/terminal.if @@ -653,6 +653,25 @@ interface(`term_use_controlling_term',` ######################################## ## <summary> +## Do not audit attempts to get attributes +## on the pty multiplexor (/dev/ptmx). +## </summary> +## <param name="domain"> +## <summary> +## Domain to not audit. +## </summary> +## </param> +# +interface(`term_dontaudit_getattr_ptmx',` + gen_require(` + type ptmx_t; + ') + + dontaudit $1 ptmx_t:chr_file getattr; +') + +######################################## +## <summary> ## Read and write the pty multiplexor (/dev/ptmx). ## </summary> ## <param name="domain"> diff --git a/policy/modules/kernel/terminal.te b/policy/modules/kernel/terminal.te index 9b79309..1d70a04 100644 --- a/policy/modules/kernel/terminal.te +++ b/policy/modules/kernel/terminal.te @@ -1,5 +1,5 @@ -policy_module(terminal, 1.8.0) +policy_module(terminal, 1.8.1) ######################################## #