From 3c6530cbdd697b65b3e4f7ebfd80eabd461fcf30 Mon Sep 17 00:00:00 2001 From: Guido Trentalancia Date: Sat, 17 Dec 2016 19:08:40 +0100 Subject: [PATCH] udev: always enable kernel module loading The udev daemon should be able to load kernel modules not only on systems using systemd but also on systems using former versions of the udev daemon. Signed-off-by: Guido Trentalancia --- policy/modules/system/udev.te | 3 +-- 1 file changed, 1 insertion(+), 2 deletions(-) diff --git a/policy/modules/system/udev.te b/policy/modules/system/udev.te index 55d1aec22..6e1e62f1b 100644 --- a/policy/modules/system/udev.te +++ b/policy/modules/system/udev.te @@ -79,6 +79,7 @@ manage_lnk_files_pattern(udev_t, udev_var_run_t, udev_var_run_t) manage_sock_files_pattern(udev_t, udev_var_run_t, udev_var_run_t) files_pid_filetrans(udev_t, udev_var_run_t, dir, "udev") +kernel_load_module(udev_t) kernel_read_system_state(udev_t) kernel_request_load_module(udev_t) kernel_getattr_core_if(udev_t) @@ -220,8 +221,6 @@ ifdef(`distro_redhat',` ') ifdef(`init_systemd',` - kernel_load_module(udev_t) - files_search_kernel_modules(udev_t) fs_read_cgroup_files(udev_t)