--- nsaserefpolicy/policy/modules/kernel/devices.if 2007-01-02 12:57:13.000000000 -0500 +++ serefpolicy-2.5.10/policy/modules/kernel/devices.if 2007-03-22 15:06:58.000000000 -0400 @@ -2449,6 +2449,24 @@ ######################################## ## +## Write in a sysfs directories. +## +## +## +## The type of the process performing this action. +## +## +# +interface(`dev_write_sysfs_dirs',` + gen_require(` + type sysfs_t; + ') + + allow $1 sysfs_t:dir write; +') + +######################################## +## ## Search the sysfs directories. ## ## --- nsaserefpolicy/policy/modules/services/cpucontrol.te 2007-01-02 12:57:43.000000000 -0500 +++ serefpolicy-2.5.10/policy/modules/services/cpucontrol.te 2007-03-22 15:06:59.000000000 -0400 @@ -91,6 +91,7 @@ kernel_read_system_state(cpuspeed_t) kernel_read_kernel_sysctls(cpuspeed_t) +dev_write_sysfs_dirs(cpuspeed_t) dev_rw_sysfs(cpuspeed_t) domain_use_interactive_fds(cpuspeed_t)