|
![](https://seccdn.libravatar.org/avatar/e9a507678aa95ef1a85b8d3939d526545e03c5d44f3a7d4e5247de29fff9c563?s=16&d=retro) |
7172f2 |
policy_module(systemd_hs,0.0.1)
|
|
![](https://seccdn.libravatar.org/avatar/e9a507678aa95ef1a85b8d3939d526545e03c5d44f3a7d4e5247de29fff9c563?s=16&d=retro) |
7172f2 |
|
|
![](https://seccdn.libravatar.org/avatar/e9a507678aa95ef1a85b8d3939d526545e03c5d44f3a7d4e5247de29fff9c563?s=16&d=retro) |
7172f2 |
# systemd overrides for 247
|
|
![](https://seccdn.libravatar.org/avatar/e9a507678aa95ef1a85b8d3939d526545e03c5d44f3a7d4e5247de29fff9c563?s=16&d=retro) |
7172f2 |
gen_require(`
|
|
![](https://seccdn.libravatar.org/avatar/e9a507678aa95ef1a85b8d3939d526545e03c5d44f3a7d4e5247de29fff9c563?s=16&d=retro) |
7172f2 |
type init_t;
|
|
![](https://seccdn.libravatar.org/avatar/e9a507678aa95ef1a85b8d3939d526545e03c5d44f3a7d4e5247de29fff9c563?s=16&d=retro) |
7172f2 |
type init_var_run_t;
|
|
![](https://seccdn.libravatar.org/avatar/e9a507678aa95ef1a85b8d3939d526545e03c5d44f3a7d4e5247de29fff9c563?s=16&d=retro) |
7172f2 |
type kmsg_device_t;
|
|
![](https://seccdn.libravatar.org/avatar/e9a507678aa95ef1a85b8d3939d526545e03c5d44f3a7d4e5247de29fff9c563?s=16&d=retro) |
7172f2 |
type proc_kmsg_t;
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
10eaf0 |
type proc_security_t;
|
|
![](https://seccdn.libravatar.org/avatar/e9a507678aa95ef1a85b8d3939d526545e03c5d44f3a7d4e5247de29fff9c563?s=16&d=retro) |
7172f2 |
type systemd_hostnamed_t;
|
|
![](https://seccdn.libravatar.org/avatar/e9a507678aa95ef1a85b8d3939d526545e03c5d44f3a7d4e5247de29fff9c563?s=16&d=retro) |
7172f2 |
type systemd_localed_t;
|
|
![](https://seccdn.libravatar.org/avatar/e9a507678aa95ef1a85b8d3939d526545e03c5d44f3a7d4e5247de29fff9c563?s=16&d=retro) |
7172f2 |
type systemd_logind_t;
|
|
![](https://seccdn.libravatar.org/avatar/e9a507678aa95ef1a85b8d3939d526545e03c5d44f3a7d4e5247de29fff9c563?s=16&d=retro) |
7172f2 |
type systemd_resolved_t;
|
|
![](https://seccdn.libravatar.org/avatar/e9a507678aa95ef1a85b8d3939d526545e03c5d44f3a7d4e5247de29fff9c563?s=16&d=retro) |
7172f2 |
type systemd_tmpfiles_t;
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
10eaf0 |
type systemd_hwdb_t;
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
10eaf0 |
type systemd_sysctl_t;
|
|
![](https://seccdn.libravatar.org/avatar/e9a507678aa95ef1a85b8d3939d526545e03c5d44f3a7d4e5247de29fff9c563?s=16&d=retro) |
7172f2 |
type security_t;
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
10eaf0 |
type tpm_device_t;
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
10eaf0 |
type ramfs_t;
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
10eaf0 |
type shadow_t;
|
|
![](https://seccdn.libravatar.org/avatar/e9a507678aa95ef1a85b8d3939d526545e03c5d44f3a7d4e5247de29fff9c563?s=16&d=retro) |
7172f2 |
type syslogd_t;
|
|
![](https://seccdn.libravatar.org/avatar/e9a507678aa95ef1a85b8d3939d526545e03c5d44f3a7d4e5247de29fff9c563?s=16&d=retro) |
7172f2 |
type user_tmp_t;
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
10eaf0 |
type systemd_machined_t;
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
10eaf0 |
type system_dbusd_var_run_t;
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
10eaf0 |
type systemd_networkd_t;
|
|
![](https://seccdn.libravatar.org/avatar/e9a507678aa95ef1a85b8d3939d526545e03c5d44f3a7d4e5247de29fff9c563?s=16&d=retro) |
7172f2 |
')
|
|
![](https://seccdn.libravatar.org/avatar/e9a507678aa95ef1a85b8d3939d526545e03c5d44f3a7d4e5247de29fff9c563?s=16&d=retro) |
7172f2 |
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
10eaf0 |
#============= init_t ==============
|
|
![](https://seccdn.libravatar.org/avatar/e9a507678aa95ef1a85b8d3939d526545e03c5d44f3a7d4e5247de29fff9c563?s=16&d=retro) |
7172f2 |
allow init_t kmsg_device_t:chr_file mounton;
|
|
![](https://seccdn.libravatar.org/avatar/e9a507678aa95ef1a85b8d3939d526545e03c5d44f3a7d4e5247de29fff9c563?s=16&d=retro) |
7172f2 |
allow init_t proc_kmsg_t:file { getattr mounton };
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
10eaf0 |
allow init_t ramfs_t:file manage_file_perms;
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
10eaf0 |
allow init_t tpm_device_t:chr_file { read write open };
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
10eaf0 |
allow init_t shadow_t:file { read open };
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
10eaf0 |
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
10eaf0 |
#============= systemd_hwdb_t ==============
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
10eaf0 |
allow systemd_hwdb_t security_t:file { read open };
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
10eaf0 |
allow systemd_hwdb_t self:netlink_selinux_socket { create bind };
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
10eaf0 |
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
10eaf0 |
#============= systemd_sysctl_t ==============
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
10eaf0 |
allow systemd_sysctl_t proc_security_t:file read;
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
10eaf0 |
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
10eaf0 |
#============= syslogd_t ==============
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
10eaf0 |
allow syslogd_t user_tmp_t:dir search;
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
10eaf0 |
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
10eaf0 |
#============= systemd_machined_t ==============
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
10eaf0 |
allow systemd_machined_t init_var_run_t:sock_file manage_sock_file_perms;
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
10eaf0 |
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
10eaf0 |
#============= systemd_networkd_t ==============
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
500ca9 |
allow systemd_networkd_t system_dbusd_var_run_t:sock_file *;
|
|
![](https://seccdn.libravatar.org/avatar/e9a507678aa95ef1a85b8d3939d526545e03c5d44f3a7d4e5247de29fff9c563?s=16&d=retro) |
7172f2 |
|
|
![](https://seccdn.libravatar.org/avatar/e9a507678aa95ef1a85b8d3939d526545e03c5d44f3a7d4e5247de29fff9c563?s=16&d=retro) |
7172f2 |
selinux_use_status_page(init_t)
|
|
![](https://seccdn.libravatar.org/avatar/e9a507678aa95ef1a85b8d3939d526545e03c5d44f3a7d4e5247de29fff9c563?s=16&d=retro) |
7172f2 |
selinux_use_status_page(systemd_hostnamed_t)
|
|
![](https://seccdn.libravatar.org/avatar/e9a507678aa95ef1a85b8d3939d526545e03c5d44f3a7d4e5247de29fff9c563?s=16&d=retro) |
7172f2 |
selinux_use_status_page(systemd_localed_t)
|
|
![](https://seccdn.libravatar.org/avatar/e9a507678aa95ef1a85b8d3939d526545e03c5d44f3a7d4e5247de29fff9c563?s=16&d=retro) |
7172f2 |
selinux_use_status_page(systemd_logind_t)
|
|
![](https://seccdn.libravatar.org/avatar/e9a507678aa95ef1a85b8d3939d526545e03c5d44f3a7d4e5247de29fff9c563?s=16&d=retro) |
7172f2 |
selinux_use_status_page(systemd_resolved_t)
|
|
![](https://seccdn.libravatar.org/avatar/e9a507678aa95ef1a85b8d3939d526545e03c5d44f3a7d4e5247de29fff9c563?s=16&d=retro) |
7172f2 |
selinux_use_status_page(systemd_tmpfiles_t)
|
|
![](https://seccdn.libravatar.org/avatar/47dbcbae04c4f6edd99f423c08db902b456612be7a757594abb7295f957b1847?s=16&d=retro) |
10eaf0 |
selinux_use_status_page(systemd_hwdb_t)
|