diff --git a/policy/modules/system/init.te b/policy/modules/system/init.te index dd3be8d55..eb18638e9 100644 --- a/policy/modules/system/init.te +++ b/policy/modules/system/init.te @@ -226,6 +226,7 @@ optional_policy(` allow initrc_t self:process { getpgid setsched setpgid setrlimit getsched }; allow initrc_t self:capability ~{ sys_admin sys_module }; +allow initrc_t self:capability2 block_suspend; dontaudit initrc_t self:capability sys_module; # sysctl is triggering this allow initrc_t self:passwd rootok; allow initrc_t self:key manage_key_perms;