diff --git a/policy/modules/services/xserver.te b/policy/modules/services/xserver.te index 145fc4bb4..33b91be0a 100644 --- a/policy/modules/services/xserver.te +++ b/policy/modules/services/xserver.te @@ -610,6 +610,7 @@ allow xserver_t self:unix_dgram_socket { create_socket_perms sendto }; allow xserver_t self:unix_stream_socket { create_stream_socket_perms connectto }; allow xserver_t self:tcp_socket create_stream_socket_perms; allow xserver_t self:udp_socket create_socket_perms; +allow xserver_t self:netlink_kobject_uevent_socket create_socket_perms; manage_dirs_pattern(xserver_t, xserver_tmp_t, xserver_tmp_t) manage_files_pattern(xserver_t, xserver_tmp_t, xserver_tmp_t) @@ -777,6 +778,10 @@ optional_policy(` rhgb_signal(xserver_t) ') +optional_policy(` + udev_read_db(xserver_t) +') + optional_policy(` unconfined_domain_noaudit(xserver_t) unconfined_domtrans(xserver_t)