Skip to content

Commit bb6f409

Browse files
authored
Allow keylime_server_t itself write to keyring
1 parent 31a8e51 commit bb6f409

File tree

1 file changed

+1
-0
lines changed

1 file changed

+1
-0
lines changed

keylime.te

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -74,6 +74,7 @@ optional_policy(`
7474
# keylime server policy
7575
#
7676

77+
allow keylime_server_t self:key { read write };
7778
allow keylime_server_t self:netlink_route_socket { create_stream_socket_perms nlmsg_read };
7879
allow keylime_server_t self:udp_socket create_stream_socket_perms;
7980

0 commit comments

Comments
 (0)