diff --git a/policy/modules/services/openct.te b/policy/modules/services/openct.te index 4996f62ae..538ddbcc5 100644 --- a/policy/modules/services/openct.te +++ b/policy/modules/services/openct.te @@ -20,9 +20,10 @@ files_pid_file(openct_var_run_t) dontaudit openct_t self:capability sys_tty_config; allow openct_t self:process signal_perms; +manage_dirs_pattern(openct_t, openct_var_run_t, openct_var_run_t) manage_files_pattern(openct_t, openct_var_run_t, openct_var_run_t) manage_sock_files_pattern(openct_t, openct_var_run_t, openct_var_run_t) -files_pid_filetrans(openct_t, openct_var_run_t, { file sock_file }) +files_pid_filetrans(openct_t, openct_var_run_t, { dir file sock_file }) kernel_read_kernel_sysctls(openct_t) kernel_list_proc(openct_t)