missed that sysctl_dev is a dir too
This commit is contained in:
parent
3009816bcd
commit
b5860610b4
@ -497,6 +497,7 @@ define(`kernel_read_device_sysctl',`
|
||||
requires_block_template(kernel_read_device_sysctl_depend,$2)
|
||||
allow $1 proc_t:dir search;
|
||||
allow $1 sysctl_t:dir { getattr search read };
|
||||
allow $1 sysctl_dev_t:dir { getattr search read };
|
||||
allow $1 sysctl_dev_t:file { getattr read };
|
||||
')
|
||||
|
||||
|
Loading…
Reference in New Issue
Block a user