diff --git a/ossec.te b/ossec.te index 1f333c3..13f5d96 100644 --- a/ossec.te +++ b/ossec.te @@ -1,5 +1,5 @@ -policy_module(ossec,1.0.276) +policy_module(ossec,1.0.277) ######################################## # @@ -383,8 +383,8 @@ corenet_udp_bind_reserved_port(ossec_syscheckd_t) files_dontaudit_getattr_all_sockets(ossec_syscheckd_t) # exec patterns -allow ossec_syscheckd_t shell_exec_t:file { exec_file_perms }; -exec_files_pattern(ossec_syscheckd_t, bin_t, bin_t); +corecmd_exec_bin(ossec_syscheckd_t) +corecmd_exec_shell(ossec_syscheckd_t) # all the files files_read_all_files(ossec_syscheckd_t)