diff options
author | Lorenzo Colitti <lorenzo@google.com> | 2016-02-03 11:17:12 -0500 |
---|---|---|
committer | David S. Miller <davem@davemloft.net> | 2016-02-09 04:55:05 -0500 |
commit | 08ff924e7fa7b826396f5ef1cb15656db7fb6545 (patch) | |
tree | b5fbd11cbaa376662e9c272757e884b3ffb0d272 | |
parent | 7a84bd46647ff181eb2659fdc99590e6f16e501d (diff) |
selinux: nlmsgtab: add SOCK_DESTROY to the netlink mapping tables
Without this, using SOCK_DESTROY in enforcing mode results in:
SELinux: unrecognized netlink message type=21 for sclass=32
Signed-off-by: Lorenzo Colitti <lorenzo@google.com>
Signed-off-by: David S. Miller <davem@davemloft.net>
-rw-r--r-- | security/selinux/nlmsgtab.c | 1 |
1 files changed, 1 insertions, 0 deletions
diff --git a/security/selinux/nlmsgtab.c b/security/selinux/nlmsgtab.c index 2bbb41822d8e..8495b9368190 100644 --- a/security/selinux/nlmsgtab.c +++ b/security/selinux/nlmsgtab.c | |||
@@ -83,6 +83,7 @@ static struct nlmsg_perm nlmsg_tcpdiag_perms[] = | |||
83 | { TCPDIAG_GETSOCK, NETLINK_TCPDIAG_SOCKET__NLMSG_READ }, | 83 | { TCPDIAG_GETSOCK, NETLINK_TCPDIAG_SOCKET__NLMSG_READ }, |
84 | { DCCPDIAG_GETSOCK, NETLINK_TCPDIAG_SOCKET__NLMSG_READ }, | 84 | { DCCPDIAG_GETSOCK, NETLINK_TCPDIAG_SOCKET__NLMSG_READ }, |
85 | { SOCK_DIAG_BY_FAMILY, NETLINK_TCPDIAG_SOCKET__NLMSG_READ }, | 85 | { SOCK_DIAG_BY_FAMILY, NETLINK_TCPDIAG_SOCKET__NLMSG_READ }, |
86 | { SOCK_DESTROY, NETLINK_TCPDIAG_SOCKET__NLMSG_WRITE }, | ||
86 | }; | 87 | }; |
87 | 88 | ||
88 | static struct nlmsg_perm nlmsg_xfrm_perms[] = | 89 | static struct nlmsg_perm nlmsg_xfrm_perms[] = |