Blame SOURCES/selinux.patch

e4d26d
diff -up ./fapolicyd-selinux-0.3/fapolicyd.te.selinux ./fapolicyd-selinux-0.3/fapolicyd.te
10e794
--- ./fapolicyd-selinux-0.3/fapolicyd.te.selinux	2020-06-01 14:41:37.000000000 +0200
10e794
+++ ./fapolicyd-selinux-0.3/fapolicyd.te	2021-03-19 10:50:13.885358270 +0100
10e794
@@ -62,9 +62,14 @@ domain_read_all_domains_state(fapolicyd_
10e794
 files_mmap_usr_files(fapolicyd_t)
10e794
 files_read_all_files(fapolicyd_t)
e4d26d
 fs_getattr_xattr_fs(fapolicyd_t)
10e794
+kernel_read_all_sysctls(fapolicyd_t)
10e794
+kernel_read_all_proc(fapolicyd_t)
037a42
 
e4d26d
 logging_send_syslog_msg(fapolicyd_t)
e4d26d
+dbus_system_bus_client(fapolicyd_t)
037a42
 
e4d26d
 optional_policy(`
e4d26d
-        rpm_read_db(fapolicyd_t)        
e4d26d
+        rpm_read_db(fapolicyd_t)
e4d26d
+        allow fapolicyd_t rpm_var_lib_t:file { create };
e4d26d
+        allow fapolicyd_t rpm_var_lib_t:dir { add_name write };
e4d26d
 ')