selinux-refpolicy/policy
Yi Zhao db42fb615e rpc: allow rpc.mountd to list/watch NFS server directory
Fixes:
avc: denied { read } for pid=484 comm="rpc.mountd" name="clients"
dev="nfsd" ino=22 scontext=system_u:system_r:nfsd_t
tcontext=system_u:object_r:nfsd_fs_t tclass=dir permissive=0

avc: denied { watch } for pid=487 comm="rpc.mountd"
path="/proc/fs/nfsd/clients" dev="nfsd" ino=22
scontext=system_u:system_r:nfsd_t tcontext=system_u:object_r:nfsd_fs_t
tclass=dir permissive=0

Signed-off-by: Yi Zhao <yi.zhao@windriver.com>
2021-10-27 11:20:11 +08:00
..
flask access_vectors: Add new capabilities to cap2 2020-10-15 20:55:35 -04:00
modules rpc: allow rpc.mountd to list/watch NFS server directory 2021-10-27 11:20:11 +08:00
support file_patterns.spt: Add a mmap_manage_files_pattern(). 2021-01-28 10:51:39 -05:00
constraints whitespace cleanup 2020-08-13 14:34:57 +02:00
context_defaults
global_booleans
global_tunables
mcs
mls
policy_capabilities Correct some misspellings 2020-06-05 15:38:43 +02:00
users