diff --git a/policy/modules/roles/sysadm.te b/policy/modules/roles/sysadm.te index e411d4fdd..e06c7d361 100644 --- a/policy/modules/roles/sysadm.te +++ b/policy/modules/roles/sysadm.te @@ -71,6 +71,12 @@ ifndef(`enable_mls',` logging_run_auditctl(sysadm_t, sysadm_r) ') +ifdef(`init_systemd',` + # Allow sysadm to resolve the username of dynamic users by calling + # LookupDynamicUserByUID on org.freedesktop.systemd1. + init_dbus_chat(sysadm_t) +') + tunable_policy(`allow_ptrace',` domain_ptrace_all_domains(sysadm_t) ')