diff --git a/policy/modules/system/sysnetwork.te b/policy/modules/system/sysnetwork.te index 962d2a51e..e6e3cf8f2 100644 --- a/policy/modules/system/sysnetwork.te +++ b/policy/modules/system/sysnetwork.te @@ -265,6 +265,7 @@ optional_policy(` # allow ifconfig_t self:capability { net_raw net_admin sys_admin sys_tty_config }; +dontaudit ifconfig_t self:capability sys_module; allow ifconfig_t self:process ~{ ptrace setcurrent setexec setfscreate setrlimit execmem execheap execstack }; allow ifconfig_t self:fd use; allow ifconfig_t self:fifo_file rw_fifo_file_perms;