aboutsummaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorChris PeBenito <Christopher.PeBenito@microsoft.com>2022-07-07 13:58:15 +0000
committerKenton Groombridge <concord@gentoo.org>2024-03-01 12:05:01 -0500
commit8ed5b6c298d7a8e99bda611fda765417506db83d (patch)
tree4cc6824c7dda8d7e2b969216af8c8f23033f5c60
parentsystemd: systemd-cgroups reads kernel.cap_last_cap sysctl. (diff)
downloadhardened-refpolicy-8ed5b6c298d7a8e99bda611fda765417506db83d.tar.gz
hardened-refpolicy-8ed5b6c298d7a8e99bda611fda765417506db83d.tar.bz2
hardened-refpolicy-8ed5b6c298d7a8e99bda611fda765417506db83d.zip
kernel: hv_utils shutdown on systemd systems.
Signed-off-by: Chris PeBenito <Christopher.PeBenito@microsoft.com> Signed-off-by: Kenton Groombridge <concord@gentoo.org>
-rw-r--r--policy/modules/kernel/kernel.te5
1 files changed, 5 insertions, 0 deletions
diff --git a/policy/modules/kernel/kernel.te b/policy/modules/kernel/kernel.te
index 1aa2e0924..39c07aec8 100644
--- a/policy/modules/kernel/kernel.te
+++ b/policy/modules/kernel/kernel.te
@@ -389,6 +389,11 @@ ifdef(`init_systemd',`
')
optional_policy(`
+ systemd_start_power_units(kernel_t)
+ systemd_status_power_units(kernel_t)
+ ')
+
+ optional_policy(`
selinux_compute_create_context(kernel_t)
')