mirror of
https://github.com/vanhoefm/fragattacks.git
synced 2024-12-01 11:48:23 -05:00
bd4ce06629
Change the dbus policy file to only allow root applications to receive signals from wpa_supplicant. This keeps WPS Credentials data secret from non-root listeners.
28 lines
1.2 KiB
Plaintext
28 lines
1.2 KiB
Plaintext
<!DOCTYPE busconfig PUBLIC
|
|
"-//freedesktop//DTD D-BUS Bus Configuration 1.0//EN"
|
|
"http://www.freedesktop.org/standards/dbus/1.0/busconfig.dtd">
|
|
<busconfig>
|
|
<policy user="root">
|
|
<allow own="fi.epitest.hostap.WPASupplicant"/>
|
|
|
|
<allow send_destination="fi.epitest.hostap.WPASupplicant"/>
|
|
<allow send_interface="fi.epitest.hostap.WPASupplicant"/>
|
|
|
|
<allow own="fi.w1.wpa_supplicant1"/>
|
|
|
|
<allow send_destination="fi.w1.wpa_supplicant1"/>
|
|
<allow send_interface="fi.w1.wpa_supplicant1"/>
|
|
<allow receive_sender="fi.w1.wpa_supplicant1" receive_type="signal"/>
|
|
</policy>
|
|
<policy context="default">
|
|
<deny own="fi.epitest.hostap.WPASupplicant"/>
|
|
<deny send_destination="fi.epitest.hostap.WPASupplicant"/>
|
|
<deny send_interface="fi.epitest.hostap.WPASupplicant"/>
|
|
|
|
<deny own="fi.w1.wpa_supplicant1"/>
|
|
<deny send_destination="fi.w1.wpa_supplicant1"/>
|
|
<deny send_interface="fi.w1.wpa_supplicant1"/>
|
|
<deny receive_sender="fi.w1.wpa_supplicant1" receive_type="signal"/>
|
|
</policy>
|
|
</busconfig>
|