diff --git a/refpolicy/policy/modules/services/apache.te b/refpolicy/policy/modules/services/apache.te index ce815d0..0bd436d 100644 --- a/refpolicy/policy/modules/services/apache.te +++ b/refpolicy/policy/modules/services/apache.te @@ -591,6 +591,10 @@ optional_policy(`nis.te',` nis_use_ypbind(httpd_suexec_t) ') +optional_policy(`nscd.te',` + nscd_use_socket(httpd_suexec_t) +') + ######################################## # # Apache system script local policy diff --git a/refpolicy/policy/modules/services/finger.te b/refpolicy/policy/modules/services/finger.te index 72c467f..b45c65a 100644 --- a/refpolicy/policy/modules/services/finger.te +++ b/refpolicy/policy/modules/services/finger.te @@ -119,6 +119,10 @@ optional_policy(`nis.te',` nis_use_ypbind(fingerd_t) ') +optional_policy(`nscd.te',` + nscd_use_socket(fingerd_t) +') + optional_policy(`selinuxutil.te',` seutil_sigchld_newrole(fingerd_t) ') diff --git a/refpolicy/policy/modules/services/rshd.te b/refpolicy/policy/modules/services/rshd.te index ba7c21b..5ab132e 100644 --- a/refpolicy/policy/modules/services/rshd.te +++ b/refpolicy/policy/modules/services/rshd.te @@ -82,6 +82,10 @@ optional_policy(`kerberos.te',` kerberos_use(rshd_t) ') +optional_policy(`nscd.te',` + nscd_use_socket(rshd_t) +') + ifdef(`TODO',` optional_policy(`rlogind.te', ` allow rshd_t rlogind_tmp_t:file rw_file_perms; diff --git a/refpolicy/policy/modules/services/tftp.te b/refpolicy/policy/modules/services/tftp.te index 2b791ad..93fc7f5 100644 --- a/refpolicy/policy/modules/services/tftp.te +++ b/refpolicy/policy/modules/services/tftp.te @@ -93,9 +93,14 @@ optional_policy(`mount.te',` mount_send_nfs_client_request(tftpd_t) ') +optional_policy(`nscd.te',` + nscd_use_socket(tftpd_t) +') + optional_policy(`selinuxutil.te',` seutil_sigchld_newrole(tftpd_t) ') + optional_policy(`udev.te', ` udev_read_db(tftpd_t) ') diff --git a/refpolicy/policy/modules/system/hostname.te b/refpolicy/policy/modules/system/hostname.te index 4ea3d19..c814459 100644 --- a/refpolicy/policy/modules/system/hostname.te +++ b/refpolicy/policy/modules/system/hostname.te @@ -76,6 +76,10 @@ optional_policy(`hotplug.te',` hotplug_dontaudit_use_fd(hostname_t) ') +optional_policy(`nscd.te',` + nscd_use_socket(hostname_t) +') + optional_policy(`selinuxutil.te',` seutil_sigchld_newrole(hostname_t) ')