From: jooseong lee Date: Mon, 26 Sep 2016 07:10:06 +0000 (+0900) Subject: Add User::Shell to onlycap list X-Git-Tag: tizen/20160930.012757~2 X-Git-Url: http://review.tizen.org/git/?a=commitdiff_plain;h=535ecdfac3f70a46eef06ffa8fa113f206508295;p=platform%2Fcore%2Fsecurity%2Fsecurity-config.git Add User::Shell to onlycap list 'User::Shell' is a new domain for only shell process. * https://review.tizen.org/gerrit/#/c/89586/ Change-Id: Icfb489f375fc02395f69005105f8e84683676009 Signed-off-by: jooseong lee --- diff --git a/smack/onlycap b/smack/onlycap index 4eb869b..fda25de 100644 --- a/smack/onlycap +++ b/smack/onlycap @@ -1 +1 @@ -System::Privileged +User::Shell System::Privileged diff --git a/smack/smack_default_labeling b/smack/smack_default_labeling index 764e33d..256cc69 100644 --- a/smack/smack_default_labeling +++ b/smack/smack_default_labeling @@ -1,6 +1,7 @@ #!/bin/bash PATH=/bin:/usr/bin:/sbin:/usr/sbin +ONLYCAP_LIST="/etc/smack/onlycap" # check initial boot function check_init_boot @@ -30,4 +31,4 @@ then set_smack_label fi -echo "System::Privileged" > /sys/fs/smackfs/onlycap +echo $(cat $ONLYCAP_LIST) > /sys/fs/smackfs/onlycap