Blob Blame History Raw
From e98c8766655216db3d9a08b1fa52ba7decf57c46 Mon Sep 17 00:00:00 2001
From: Stef Walter <stefw@redhat.com>
Date: Mon, 5 May 2014 08:41:00 +0200
Subject: [PATCH 2/2] dbus: Fix desktop centric polkit policy file

In order to allow use of ABRT's DBus API on servers, the polkit
policy should allow admin usage even when not logged in an active
seat (ie: monitor and keyboard). Otherwise use from ssh logins and
Cockpit is prevented.
---
 src/dbus/abrt_polkit.policy | 8 ++++----
 1 file changed, 4 insertions(+), 4 deletions(-)

diff --git a/src/dbus/abrt_polkit.policy b/src/dbus/abrt_polkit.policy
index 06008b4..a3425d9 100644
--- a/src/dbus/abrt_polkit.policy
+++ b/src/dbus/abrt_polkit.policy
@@ -19,9 +19,9 @@ Copyright (c) 2012 ABRT Team <crash-catcher@fedorahosted.com>
     <description>Get problems from all users</description>
     <message>Reading others problems requires authentication</message>
     <defaults>
-      <allow_any>no</allow_any>
+      <allow_any>auth_admin</allow_any>
       <allow_active>auth_admin_keep</allow_active>
-      <allow_inactive>no</allow_inactive>
+      <allow_inactive>auth_admin</allow_inactive>
     </defaults>
   </action>
 
@@ -30,9 +30,9 @@ Copyright (c) 2012 ABRT Team <crash-catcher@fedorahosted.com>
     <description>Set value of configuration properties</description>
     <message>Update configuration values reuquires authentication</message>
     <defaults>
-      <allow_any>no</allow_any>
+      <allow_any>auth_admin</allow_any>
       <allow_active>auth_admin_keep</allow_active>
-      <allow_inactive>no</allow_inactive>
+      <allow_inactive>auth_admin</allow_inactive>
     </defaults>
   </action>
 
-- 
1.9.0