Blame SOURCES/tigervnc-root-user-selinux-context.patch

cd9363
From faf81b4b238e24fe29eb53f885a25367e212dd7b Mon Sep 17 00:00:00 2001
cd9363
From: Zdenek Pytela <zpytela@redhat.com>
cd9363
Date: Mon, 7 Feb 2022 10:45:41 +0100
cd9363
Subject: [PATCH] SELinux: use /root/.vnc in file context specification
cd9363
cd9363
Instead of HOME_ROOT/.vnc, /root/.vnc should be used
cd9363
for user root's home to specify default file context
cd9363
as HOME_ROOT actually means base for home dirs (usually /home).
cd9363
---
cd9363
 unix/vncserver/selinux/vncsession.fc | 2 +-
cd9363
 1 file changed, 1 insertion(+), 1 deletion(-)
cd9363
cd9363
diff --git a/unix/vncserver/selinux/vncsession.fc b/unix/vncserver/selinux/vncsession.fc
cd9363
index 6aaf4b1f4..bc81f8f25 100644
cd9363
--- a/unix/vncserver/selinux/vncsession.fc
cd9363
+++ b/unix/vncserver/selinux/vncsession.fc
cd9363
@@ -18,7 +18,7 @@
cd9363
 #
cd9363
cd9363
 HOME_DIR/\.vnc(/.*)?      gen_context(system_u:object_r:vnc_home_t,s0)
cd9363
-HOME_ROOT/\.vnc(/.*)?      gen_context(system_u:object_r:vnc_home_t,s0)
cd9363
+/root/\.vnc(/.*)?      gen_context(system_u:object_r:vnc_home_t,s0)
cd9363
cd9363
 /usr/sbin/vncsession			--	gen_context(system_u:object_r:vnc_session_exec_t,s0)
cd9363
 /usr/libexec/vncsession-start		--	gen_context(system_u:object_r:vnc_session_exec_t,s0)