etc: Add more SELinux permissions for the daemon.

This is needed for some package test suites.

* etc/guix-daemon.cil.in (guix_daemon): Permit unix_dgram_socket operations.
This commit is contained in:
Marius Bakke 2020-11-25 23:07:29 +01:00
parent cbcd520e1a
commit d64e0261d0
No known key found for this signature in database
GPG key ID: A2A06DF2A33A54FA

View file

@ -372,6 +372,9 @@
(allow guix_daemon_t
self
(unix_stream_socket (connectto)))
(allow guix_daemon_t
self
(unix_dgram_socket (create bind connect sendto read write)))
(allow guix_daemon_t
node_t