From e80e13c84ac51f6294feccc67988ce98b18c0ce6 Mon Sep 17 00:00:00 2001 From: "Stuart D. Gathman" Date: Mon, 12 Nov 2018 19:17:22 -0500 Subject: [PATCH] Add back map permission I accidentally removed. --- cjdns.selinux.patch | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/cjdns.selinux.patch b/cjdns.selinux.patch index 65d7f9c..77d3052 100644 --- a/cjdns.selinux.patch +++ b/cjdns.selinux.patch @@ -17,7 +17,7 @@ diff -up ./contrib/selinux/cjdns.te.selinux ./contrib/selinux/cjdns.te # Let master process run further restricted subprocess -allow cjdns_t cjdns_exec_t:file { execute_no_trans execmod }; -allow cjdns_t self:capability { net_admin net_raw setuid setgid sys_chroot sys_module }; -+allow cjdns_t cjdns_exec_t:file { execute_no_trans execmod }; ++allow cjdns_t cjdns_exec_t:file { execute_no_trans execmod map }; +allow cjdns_t self:capability { net_admin net_raw setuid setgid sys_chroot }; allow cjdns_t self:process { signal getcap setrlimit setcap }; -allow cjdns_t kernel_t:system module_request;