diff --git a/backport-call-init_nnp_daemon_domain-for-domain-to-allow.patch b/backport-call-init_nnp_daemon_domain-for-domain-to-allow.patch new file mode 100644 index 0000000000000000000000000000000000000000..1346386cdf7da3bfed54bf7cae7d1cf3e65a1ec6 --- /dev/null +++ b/backport-call-init_nnp_daemon_domain-for-domain-to-allow.patch @@ -0,0 +1,25 @@ +From 2740de19da2153df8eb0e2ab0a98544e7db2d7da Mon Sep 17 00:00:00 2001 +From: jiawenhao +Date: Sun, 20 Apr 2025 09:33:56 +0800 +Subject: [PATCH] call-init_nnp_daemon_domain-for-domain-to-allow-for-systemd + +--- + selinux/tabrmd.te | 2 +- + 1 file changed, 1 insertion(+), 1 deletion(-) + +diff --git a/selinux/tabrmd.te b/selinux/tabrmd.te +index 8996a46..efd2336 100644 +--- a/selinux/tabrmd.te ++++ b/selinux/tabrmd.te +@@ -9,7 +9,7 @@ gen_tunable(`tabrmd_connect_all_unreserved', false) + + type tabrmd_t; + type tabrmd_exec_t; +-init_daemon_domain(tabrmd_t, tabrmd_exec_t) ++init_nnp_daemon_domain(tabrmd_t, tabrmd_exec_t) + + allow tabrmd_t self:unix_dgram_socket { create_socket_perms }; + +-- +2.43.0 + diff --git a/tpm2-abrmd.spec b/tpm2-abrmd.spec index a7d64308248776a8ff025d9a055e7649ac08aa0b..96ca941eb5350f6aae8cfb30ffb4c467ae6b632e 100644 --- a/tpm2-abrmd.spec +++ b/tpm2-abrmd.spec @@ -2,7 +2,7 @@ Name: tpm2-abrmd Version: 3.0.0 -Release: 5 +Release: 6 Summary: A system daemon implementing the TPM2 access broker (TAB) & Resource Manager (RM) spec from the TCG License: BSD URL: https://github.com/tpm2-software/tpm2-abrmd @@ -10,6 +10,7 @@ Source0: https://github.com/tpm2-software/tpm2-abrmd/releases/download/% Patch3001: Hygon-Add-support-for-TCM-devices.patch Patch3002: backport-fix-in-SELinux-interface-file-a-typo.patch +Patch3003: backport-call-init_nnp_daemon_domain-for-domain-to-allow.patch BuildRequires: systemd pkgconfig(cmocka) pkgconfig(dbus-1) pkgconfig(gio-unix-2.0) pkgconfig(tss2-mu) pkgconfig(tss2-sys) BuildRequires: tpm2-tss-devel >= 2.4.0 libtool autoconf-archive libgcrypt libgcrypt-devel @@ -139,6 +140,12 @@ fi %{_datadir}/selinux/packages/tabrmd.pp.bz2 %changelog +* Sun Apr 20 2025 jiawenhao - 3.0.0-6 +- Type:bugfix +- ID:NA +- SUG:NA +- DESC: call init_nnp_daemon_domain for domain to allow for systemd + * Fri Apr 18 2025 jiawenhao - 3.0.0-5 - Type:bugfix - ID:NA