kernel: dontaudit read fixed disk devices

This is triggered rook-ceph creates its OSDs.

Signed-off-by: Kenton Groombridge <concord@gentoo.org>
This commit is contained in:
Kenton Groombridge 2024-02-07 20:47:50 -05:00
parent 5ab2cf6a6a
commit 08adc2fadb

View File

@ -514,6 +514,10 @@ optional_policy(`
seutil_domtrans_setfiles(kernel_t)
')
optional_policy(`
storage_dontaudit_read_fixed_disk(kernel_t)
')
optional_policy(`
unconfined_domain_noaudit(kernel_t)
')