From 5399afbc7d810f376cb69621bef2bce720f4bc56 Mon Sep 17 00:00:00 2001 From: Chris PeBenito <chpebeni@linux.microsoft.com> Date: Wed, 12 Oct 2022 09:40:50 -0400 Subject: [PATCH] container: Add missing UDP node bind access on container engines. Signed-off-by: Chris PeBenito <chpebeni@linux.microsoft.com> --- policy/modules/services/container.te | 1 + 1 file changed, 1 insertion(+) diff --git a/policy/modules/services/container.te b/policy/modules/services/container.te index e4a3f1f75..ac1bf0469 100644 --- a/policy/modules/services/container.te +++ b/policy/modules/services/container.te @@ -431,6 +431,7 @@ corenet_tcp_bind_generic_node(container_engine_domain) corenet_tcp_connect_http_port(container_engine_domain) corenet_tcp_connect_http_cache_port(container_engine_domain) corenet_tcp_bind_all_ports(container_engine_domain) +corenet_udp_bind_generic_node(container_engine_domain) corenet_udp_bind_all_ports(container_engine_domain) corenet_rw_tun_tap_dev(container_engine_domain)