selinux-refpolicy/policy/modules
Yi Zhao db42fb615e rpc: allow rpc.mountd to list/watch NFS server directory
Fixes:
avc: denied { read } for pid=484 comm="rpc.mountd" name="clients"
dev="nfsd" ino=22 scontext=system_u:system_r:nfsd_t
tcontext=system_u:object_r:nfsd_fs_t tclass=dir permissive=0

avc: denied { watch } for pid=487 comm="rpc.mountd"
path="/proc/fs/nfsd/clients" dev="nfsd" ino=22
scontext=system_u:system_r:nfsd_t tcontext=system_u:object_r:nfsd_fs_t
tclass=dir permissive=0

Signed-off-by: Yi Zhao <yi.zhao@windriver.com>
2021-10-27 11:20:11 +08:00
..
admin Bump module versions for release. 2021-09-08 10:53:44 -04:00
apps systemd, userdomain, wm: Module version bump. 2021-09-14 13:55:26 -07:00
kernel rpc: allow rpc.mountd to list/watch NFS server directory 2021-10-27 11:20:11 +08:00
roles various: Module version bump. 2021-10-05 14:59:44 -04:00
services rpc: allow rpc.mountd to list/watch NFS server directory 2021-10-27 11:20:11 +08:00
system udev: allow udev_t to watch udev_rules_t dir 2021-10-27 11:20:11 +08:00