diff --git a/frr.te b/frr.te index 20fc95d..9cccae9 100644 --- a/frr.te +++ b/frr.te @@ -33,7 +33,7 @@ files_pid_file(frr_var_run_t) # allow frr_t self:capability { chown dac_override dac_read_search kill net_bind_service net_raw setgid setuid net_admin sys_admin }; allow frr_t self:netlink_route_socket rw_netlink_socket_perms; -allow frr_t self:packet_socket { create setopt }; +allow frr_t self:packet_socket create_socket_perms; allow frr_t self:process { setcap setpgid }; allow frr_t self:rawip_socket create_socket_perms; allow frr_t self:tcp_socket { connect connected_stream_socket_perms };