diff --git a/policy/modules/system/systemd.te b/policy/modules/system/systemd.te index 2b25a7d52..b88bf2324 100644 --- a/policy/modules/system/systemd.te +++ b/policy/modules/system/systemd.te @@ -331,6 +331,8 @@ seutil_search_default_contexts(systemd_coredump_t) # Hostnamed policy # +allow systemd_hostnamed_t self:capability { sys_admin }; + kernel_read_kernel_sysctls(systemd_hostnamed_t) dev_read_sysfs(systemd_hostnamed_t)