diff --git a/policy/modules/kernel/devices.if b/policy/modules/kernel/devices.if index f525cf2a3..16f0ffa34 100644 --- a/policy/modules/kernel/devices.if +++ b/policy/modules/kernel/devices.if @@ -2187,6 +2187,24 @@ interface(`dev_manage_input_dev',` manage_chr_files_pattern($1, device_t, event_device_t) ') +######################################## +## +## Read and write ipmi devices (/dev/ipmi*). +## +## +## +## Domain allowed access. +## +## +# +interface(`dev_rw_ipmi_dev',` + gen_require(` + type device_t, ipmi_device_t; + ') + + rw_chr_files_pattern($1, device_t, ipmi_device_t) +') + ######################################## ## ## Get the attributes of the framebuffer device node.