etc: SELinux: Allow init process to setattr on profile directories.
* etc/guix-daemon.cil.in: Add rule.
parent
4a134ed32e
commit
afaeb657b1
|
@ -94,6 +94,9 @@
|
||||||
(allow init_t
|
(allow init_t
|
||||||
guix_store_content_t
|
guix_store_content_t
|
||||||
(file (open read execute)))
|
(file (open read execute)))
|
||||||
|
(allow init_t
|
||||||
|
guix_profiles_t
|
||||||
|
(dir (setattr)))
|
||||||
|
|
||||||
;; guix-daemon needs to know the names of users
|
;; guix-daemon needs to know the names of users
|
||||||
(allow guix_daemon_t
|
(allow guix_daemon_t
|
||||||
|
|
Reference in New Issue