Allow syslogd_t to read sysctl_vm_overcommit_t

This commit is contained in:
Laurent Bigonville 2015-12-16 19:19:30 +01:00
parent 4d0610807f
commit b02a5d4b55
1 changed files with 2 additions and 1 deletions

View File

@ -418,7 +418,8 @@ kernel_read_kernel_sysctls(syslogd_t)
kernel_read_proc_symlinks(syslogd_t) kernel_read_proc_symlinks(syslogd_t)
# Allow access to /proc/kmsg for syslog-ng # Allow access to /proc/kmsg for syslog-ng
kernel_read_messages(syslogd_t) kernel_read_messages(syslogd_t)
kernel_read_vm_sysctls(syslogd_t) # rsyslog
kernel_read_vm_overcommit_sysctl(syslogd_t)
kernel_clear_ring_buffer(syslogd_t) kernel_clear_ring_buffer(syslogd_t)
kernel_change_ring_buffer_level(syslogd_t) kernel_change_ring_buffer_level(syslogd_t)
# Read ring buffer for journald # Read ring buffer for journald