commit: 343c6e0f96645d89fd64ec5f6434dc792a887b02 Author: Chris PeBenito <pebenito <AT> ieee <DOT> org> AuthorDate: Mon May 15 22:27:04 2017 +0000 Commit: Sven Vermeulen <swift <AT> gentoo <DOT> org> CommitDate: Thu May 18 17:01:59 2017 +0000 URL: https://gitweb.gentoo.org/proj/hardened-refpolicy.git/commit/?id=343c6e0f
openoffice: Move ooffice_rw_tmp_files() implementation. policy/modules/contrib/openoffice.if | 20 ++++++++++---------- 1 file changed, 10 insertions(+), 10 deletions(-) diff --git a/policy/modules/contrib/openoffice.if b/policy/modules/contrib/openoffice.if index 5a579e08..19f62381 100644 --- a/policy/modules/contrib/openoffice.if +++ b/policy/modules/contrib/openoffice.if @@ -51,38 +51,38 @@ interface(`ooffice_domtrans',` ######################################## ## <summary> -## Read and write temporary -## openoffice files. +## Do not audit attempts to execute +## files in temporary directories. ## </summary> ## <param name="domain"> ## <summary> -## Domain allowed access. +## Domain to not audit. ## </summary> ## </param> # -interface(`ooffice_rw_tmp_files',` +interface(`ooffice_dontaudit_exec_tmp_files',` gen_require(` type ooffice_tmp_t; ') - rw_files_pattern($1, ooffice_tmp_t, ooffice_tmp_t) + dontaudit $1 ooffice_tmp_t:file exec_file_perms; ') ######################################## ## <summary> -## Do not audit attempts to execute -## files in temporary directories. +## Read and write temporary +## openoffice files. ## </summary> ## <param name="domain"> ## <summary> -## Domain to not audit. +## Domain allowed access. ## </summary> ## </param> # -interface(`ooffice_dontaudit_exec_tmp_files',` +interface(`ooffice_rw_tmp_files',` gen_require(` type ooffice_tmp_t; ') - dontaudit $1 ooffice_tmp_t:file exec_file_perms; + rw_files_pattern($1, ooffice_tmp_t, ooffice_tmp_t) ')