From: jason@perfinion.com (Jason Zaman) Date: Tue, 10 Jul 2018 23:03:14 +0800 Subject: [refpolicy] [PATCH 1/5] selinux: compute_access_vector requires creating netlink_selinux_sockets Message-ID: <20180710150318.49873-1-jason@perfinion.com> To: refpolicy@oss.tresys.com List-Id: refpolicy.oss.tresys.com --- policy/modules/kernel/selinux.if | 1 + 1 file changed, 1 insertion(+) diff --git a/policy/modules/kernel/selinux.if b/policy/modules/kernel/selinux.if index 8123b25f..6790e5d0 100644 --- a/policy/modules/kernel/selinux.if +++ b/policy/modules/kernel/selinux.if @@ -534,6 +534,7 @@ interface(`selinux_compute_access_vector',` ') dev_search_sysfs($1) + allow $1 self:netlink_selinux_socket create_socket_perms; allow $1 security_t:dir list_dir_perms; allow $1 security_t:file rw_file_perms; allow $1 security_t:security compute_av; -- 2.16.4