summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorChris PeBenito <pebenito@ieee.org>2023-09-26 09:43:40 -0400
committerKenton Groombridge <concord@gentoo.org>2023-10-06 11:30:09 -0400
commitd7890fb6d1c7bfd1c75d454d457b5fcdc869efe1 (patch)
treed7865a8cbf5f92e04a80027cf452d7a5cc95b7a9
parentsmall storage changes (#706) (diff)
downloadhardened-refpolicy-d7890fb6d1c7bfd1c75d454d457b5fcdc869efe1.tar.gz
hardened-refpolicy-d7890fb6d1c7bfd1c75d454d457b5fcdc869efe1.tar.bz2
hardened-refpolicy-d7890fb6d1c7bfd1c75d454d457b5fcdc869efe1.zip
postgresql: Move lines
Signed-off-by: Chris PeBenito <pebenito@ieee.org> Signed-off-by: Kenton Groombridge <concord@gentoo.org>
-rw-r--r--policy/modules/services/postgresql.te3
1 files changed, 2 insertions, 1 deletions
diff --git a/policy/modules/services/postgresql.te b/policy/modules/services/postgresql.te
index 11b3936b..810fb0ed 100644
--- a/policy/modules/services/postgresql.te
+++ b/policy/modules/services/postgresql.te
@@ -286,9 +286,10 @@ manage_fifo_files_pattern(postgresql_t, postgresql_tmp_t, postgresql_tmp_t)
manage_sock_files_pattern(postgresql_t, postgresql_tmp_t, postgresql_tmp_t)
files_tmp_filetrans(postgresql_t, postgresql_tmp_t, { dir file sock_file })
fs_tmpfs_filetrans(postgresql_t, postgresql_tmp_t, { dir lnk_file sock_file fifo_file })
-fs_tmpfs_filetrans(postgresql_t, postgresql_tmpfs_t, { file })
+
allow postgresql_t postgresql_tmpfs_t:file map;
manage_files_pattern(postgresql_t, postgresql_tmpfs_t, postgresql_tmpfs_t)
+fs_tmpfs_filetrans(postgresql_t, postgresql_tmpfs_t, { file })
manage_dirs_pattern(postgresql_t, postgresql_runtime_t, postgresql_runtime_t)
manage_files_pattern(postgresql_t, postgresql_runtime_t, postgresql_runtime_t)