diff --git a/policy/modules/services/bitlbee.te b/policy/modules/services/bitlbee.te index e74f728..2ba2d1f 100644 --- a/policy/modules/services/bitlbee.te +++ b/policy/modules/services/bitlbee.te @@ -26,7 +26,7 @@ files_type(bitlbee_var_t) # # Local policy # -# + allow bitlbee_t self:capability { setgid setuid }; allow bitlbee_t self:udp_socket create_socket_perms; diff --git a/policy/modules/services/nis.te b/policy/modules/services/nis.te index 3bd04d9..5f2ba87 100644 --- a/policy/modules/services/nis.te +++ b/policy/modules/services/nis.te @@ -55,6 +55,7 @@ files_pid_file(ypxfr_var_run_t) ######################################## # # ypbind local policy +# dontaudit ypbind_t self:capability { net_admin sys_tty_config }; allow ypbind_t self:process signal_perms;