diff --git a/policy/modules/system/init.te b/policy/modules/system/init.te index 53696379c..62c1c0d93 100644 --- a/policy/modules/system/init.te +++ b/policy/modules/system/init.te @@ -343,6 +343,9 @@ files_mounton_isid_type_dirs(initrc_t) files_list_default(initrc_t) files_mounton_default(initrc_t) +fs_delete_cgroup_dirs(initrc_t) +fs_list_cgroup_dirs(initrc_t) +fs_rw_cgroup_files(initrc_t) fs_list_inotifyfs(initrc_t) fs_register_binary_executable_type(initrc_t) # rhgb-console writes to ramfs @@ -571,6 +574,10 @@ optional_policy(` bluetooth_read_config(initrc_t) ') +optional_policy(` + cgroup_stream_connect(initrc_t) +') + optional_policy(` clamav_read_config(initrc_t) ')