commit: 3d6ceaf09456045483ebfdab649c7b0458083630
Author: Sven Vermeulen <sven.vermeulen <AT> siphos <DOT> be>
AuthorDate: Sat Jun 7 19:15:49 2014 +0000
Commit: Sven Vermeulen <swift <AT> gentoo <DOT> org>
CommitDate: Sat Jun 7 19:15:49 2014 +0000
URL:
http://git.overlays.gentoo.org/gitweb/?p=proj/hardened-refpolicy.git;a=commit;h=3d6ceaf0
Some restructuring
---
policy/modules/contrib/dropbox.te | 9 ++++++---
1 file changed, 6 insertions(+), 3 deletions(-)
diff --git a/policy/modules/contrib/dropbox.te
b/policy/modules/contrib/dropbox.te
index 0921a59..f3d01e9 100644
--- a/policy/modules/contrib/dropbox.te
+++ b/policy/modules/contrib/dropbox.te
@@ -100,19 +100,22 @@ corenet_tcp_sendrecv_generic_if(dropbox_t)
corenet_tcp_sendrecv_generic_node(dropbox_t)
tunable_policy(`dropbox_bind_port',`
+ allow dropbox_t self:tcp_socket { accept listen };
+ allow dropbox_t self:udp_socket { send_msg recv_msg };
+
corenet_tcp_bind_dropbox_port(dropbox_t)
corenet_udp_bind_dropbox_port(dropbox_t)
corenet_tcp_bind_generic_node(dropbox_t)
corenet_udp_bind_generic_node(dropbox_t)
- allow dropbox_t self:tcp_socket { accept listen };
- allow dropbox_t self:udp_socket { send_msg recv_msg };
')
ifdef(`distro_gentoo',`
optional_policy(`
xdg_read_config_home_files(dropbox_t)
xdg_read_data_home_files(dropbox_t)
+ ')
+
+ optional_policy(`
userdom_user_content_access_template(dropbox, dropbox_t)
')
')
-