sec-policy/selinux-lego: update policy
This commit is contained in:
@@ -30,8 +30,10 @@ ubac_constrained(lego_data_t)
|
||||
# lego local policy
|
||||
#
|
||||
|
||||
|
||||
allow lego_t self:capability { dac_override dac_read_search };
|
||||
allow lego_t self:process getsched;
|
||||
allow lego_t self:process { getsched signal };
|
||||
allow lego_t self:fifo_file rw_fifo_file_perms;
|
||||
sysnet_read_config(lego_t)
|
||||
files_search_var_lib(lego_t)
|
||||
|
||||
|
||||
Reference in New Issue
Block a user