commit: 1573307619ff359843b960f808459e2ab51df340 Author: Sven Vermeulen <sven.vermeulen <AT> siphos <DOT> be> AuthorDate: Sun Aug 2 19:13:04 2015 +0000 Commit: Sven Vermeulen <swift <AT> gentoo <DOT> org> CommitDate: Mon Aug 10 20:46:21 2015 +0000 URL: https://gitweb.gentoo.org/proj/hardened-refpolicy.git/commit/?id=15733076
Comment on init_exec use case for salt_master_t policy/modules/contrib/salt.te | 1 + 1 file changed, 1 insertion(+) diff --git a/policy/modules/contrib/salt.te b/policy/modules/contrib/salt.te index 0a3d45a..2a4e84d 100644 --- a/policy/modules/contrib/salt.te +++ b/policy/modules/contrib/salt.te @@ -190,6 +190,7 @@ fs_getattr_tmpfs(salt_master_t) getty_use_fds(salt_master_t) +# Actually seems to require getattr read execute on init_exec_t init_exec(salt_master_t) init_read_state(salt_master_t)