File tree Expand file tree Collapse file tree 1 file changed +10
-2
lines changed Expand file tree Collapse file tree 1 file changed +10
-2
lines changed Original file line number Diff line number Diff line change 1
- policy_module(container, 2 .123 .0 )
1
+ policy_module(container, 2 .124 .0 )
2
2
gen_require(`
3
3
class passwd rootok;
4
4
')
@@ -510,6 +510,14 @@ optional_policy(`
510
510
lvm_domtrans(container_runtime_domain)
511
511
')
512
512
513
+ optional_policy(`
514
+ gen_require(`
515
+ type systemd_logind_t;
516
+ ')
517
+
518
+ domtrans_pattern(systemd_logind_t, container_runtime_exec_t , container_runtime_t)
519
+ ')
520
+
513
521
optional_policy(`
514
522
udev_read_db(container_runtime_domain)
515
523
')
@@ -653,7 +661,7 @@ allow container_domain self:lnk_file setattr;
653
661
dontaudit container_domain self:capability fsetid;
654
662
allow container_domain self:association sendto;
655
663
allow container_domain self:dir list_dir_perms;
656
- dontaudit container_domain self:dir write;
664
+ dontaudit container_domain self:dir { write add_name } ;
657
665
allow container_domain self:file rw_file_perms;
658
666
allow container_domain self:lnk_file read_file_perms;
659
667
allow container_domain self:fifo_file create_fifo_file_perms;
You can’t perform that action at this time.
0 commit comments