diff --git a/policy/modules/services/bind.te b/policy/modules/services/bind.te index 0a08be452..37f2fdd1f 100644 --- a/policy/modules/services/bind.te +++ b/policy/modules/services/bind.te @@ -80,6 +80,8 @@ allow named_t self:process { setsched getsched getcap setcap setrlimit signal_pe allow named_t self:fifo_file rw_fifo_file_perms; allow named_t self:unix_stream_socket { accept listen }; allow named_t self:tcp_socket { accept listen }; +allow named_t self:anon_inode { create map read write }; +allow named_t self:io_uring sqpoll; manage_files_pattern(named_t, dnssec_t, dnssec_t) filetrans_pattern(named_t, named_conf_t, dnssec_t, dir, "cache")