diff --git a/policy/modules/system/systemd.te b/policy/modules/system/systemd.te index 143064474..d0a852a27 100644 --- a/policy/modules/system/systemd.te +++ b/policy/modules/system/systemd.te @@ -362,6 +362,8 @@ seutil_search_default_contexts(systemd_coredump_t) # allow systemd_generator_t self:fifo_file rw_fifo_file_perms; +allow systemd_generator_t self:capability dac_override; +allow systemd_generator_t self:process setfscreate; corecmd_getattr_bin_files(systemd_generator_t)