selinux-policy/Policy-for-restoring-kernel_t.patch

28 lines
675 B
Diff

From 89d0eb2654943472f2ce33bcaa04be015985d5d8 Mon Sep 17 00:00:00 2001
From: jinlun <jinlun@huawei.com>
Date: Tue, 21 Mar 2023 10:15:04 +0800
Subject: [PATCH] Policy for restoring kernel_t
---
policy/modules/kernel/kernel.te | 4 ++++
1 file changed, 4 insertions(+)
diff --git a/policy/modules/kernel/kernel.te b/policy/modules/kernel/kernel.te
index 2df33b0..a7bf2c8 100644
--- a/policy/modules/kernel/kernel.te
+++ b/policy/modules/kernel/kernel.te
@@ -504,6 +504,10 @@ optional_policy(`
init_read_utmp(kernel_systemctl_t)
')
+optional_policy(`
+ unconfined_domain_noaudit(kernel_t)
+')
+
optional_policy(`
virt_filetrans_home_content(kernel_t)
')
--
2.27.0