(ver4a) Add custom policy for ifconfig
This commit is contained in:
parent
677bf5503f
commit
17a6e31805
3 changed files with 21 additions and 0 deletions
11
containers/selinux-policies/ver4a-selinux.te
Normal file
11
containers/selinux-policies/ver4a-selinux.te
Normal file
|
|
@ -0,0 +1,11 @@
|
|||
|
||||
module ver4a-selinux 1.0;
|
||||
|
||||
require {
|
||||
type ifconfig_t;
|
||||
class cap_userns { net_admin sys_ptrace };
|
||||
}
|
||||
|
||||
#============= ifconfig_t ==============
|
||||
|
||||
allow ifconfig_t self:cap_userns { net_admin sys_ptrace };
|
||||
Loading…
Add table
Add a link
Reference in a new issue