diff --git a/policy/modules/system/udev.te b/policy/modules/system/udev.te index d02dff717..ae56a7640 100644 --- a/policy/modules/system/udev.te +++ b/policy/modules/system/udev.te @@ -385,6 +385,7 @@ optional_policy(` # udevadm Local policy # +allow udevadm_t self:capability dac_read_search; allow udevadm_t self:netlink_kobject_uevent_socket create_socket_perms; allow udevadm_t self:unix_stream_socket create_socket_perms; @@ -394,6 +395,7 @@ delete_dirs_pattern(udevadm_t, udev_var_run_t, udev_var_run_t) delete_files_pattern(udevadm_t, udev_var_run_t, udev_var_run_t) delete_lnk_files_pattern(udevadm_t, udev_var_run_t, udev_var_run_t) list_dirs_pattern(udevadm_t, udev_var_run_t, udev_var_run_t) +read_files_pattern(udevadm_t, udev_var_run_t, udev_var_run_t) dev_rw_sysfs(udevadm_t) dev_read_urand(udevadm_t)