File tree Expand file tree Collapse file tree
Expand file tree Collapse file tree Original file line number Diff line number Diff line change @@ -38,6 +38,9 @@ logging_log_file(fapolicyd_log_t)
3838type fapolicyd_runtime_t;
3939files_runtime_file(fapolicyd_runtime_t)
4040
41+ type fapolicyd_tmpfs_t;
42+ files_tmpfs_file(fapolicyd_tmpfs_t)
43+
4144type fagenrules_tmp_t;
4245files_tmp_file(fagenrules_tmp_t)
4346
@@ -58,6 +61,7 @@ allow fapolicyd_t self:process { setcap setsched };
5861
5962allow fapolicyd_t fapolicyd_log_t:file { create_file_perms write_file_perms };
6063allow fapolicyd_t fapolicyd_runtime_t:dir setattr_dir_perms;
64+ allow fapolicyd_t fapolicyd_tmpfs_t:file write_inherited_file_perms;
6165
6266manage_fifo_files_pattern(fapolicyd_t, fapolicyd_runtime_t, fapolicyd_runtime_t)
6367manage_files_pattern(fapolicyd_t, fapolicyd_runtime_t, fapolicyd_runtime_t)
@@ -83,6 +87,7 @@ files_watch_all_mount_perm(fapolicyd_t)
8387files_watch_all_mount_sb(fapolicyd_t)
8488
8589fs_getattr_xattr_fs(fapolicyd_t)
90+ fs_tmpfs_filetrans(fapolicyd_t, fapolicyd_tmpfs_t, file)
8691fs_watch_all_fs(fapolicyd_t)
8792
8893logging_log_filetrans(fapolicyd_t, fapolicyd_log_t, file)
You can’t perform that action at this time.
0 commit comments