diff options
Diffstat (limited to 'policy/modules/admin/usermanage.te')
-rw-r--r-- | policy/modules/admin/usermanage.te | 12 |
1 files changed, 6 insertions, 6 deletions
diff --git a/policy/modules/admin/usermanage.te b/policy/modules/admin/usermanage.te index 07a99a68..673180c8 100644 --- a/policy/modules/admin/usermanage.te +++ b/policy/modules/admin/usermanage.te @@ -1,4 +1,4 @@ -policy_module(usermanage, 1.17.0) +policy_module(usermanage, 1.18.0) ######################################## # @@ -6,11 +6,9 @@ policy_module(usermanage, 1.17.0) # attribute_role chfn_roles; -role chfn_roles types chfn_t; role system_r types chfn_t; attribute_role groupadd_roles; -role groupadd_roles types groupadd_t; attribute_role passwd_roles; roleattribute system_r passwd_roles; @@ -19,7 +17,6 @@ attribute_role sysadm_passwd_roles; roleattribute system_r sysadm_passwd_roles; attribute_role useradd_roles; -role useradd_roles types useradd_t; type admin_passwd_exec_t; files_type(admin_passwd_exec_t) @@ -28,6 +25,7 @@ type chfn_t; type chfn_exec_t; domain_obj_id_change_exemption(chfn_t) application_domain(chfn_t, chfn_exec_t) +role chfn_roles types chfn_t; type crack_t; type crack_exec_t; @@ -44,6 +42,7 @@ type groupadd_t; type groupadd_exec_t; domain_obj_id_change_exemption(groupadd_t) init_system_domain(groupadd_t, groupadd_exec_t) +role groupadd_roles types groupadd_t; type passwd_t; type passwd_exec_t; @@ -63,6 +62,7 @@ type useradd_t; type useradd_exec_t; domain_obj_id_change_exemption(useradd_t) init_system_domain(useradd_t, useradd_exec_t) +role useradd_roles types useradd_t; ######################################## # @@ -337,8 +337,8 @@ logging_send_syslog_msg(passwd_t) miscfiles_read_localization(passwd_t) -seutil_read_config(groupadd_t) -seutil_read_file_contexts(groupadd_t) +seutil_read_config(passwd_t) +seutil_read_file_contexts(passwd_t) userdom_use_user_terminals(passwd_t) userdom_use_unpriv_users_fds(passwd_t) |