fc03f6
diff -up container-selinux-2.161.1/container.te.orig container-selinux-2.161.1/container.te
fc03f6
--- container-selinux-2.161.1/container.te.orig	2021-05-06 14:55:57.952216763 +0200
fc03f6
+++ container-selinux-2.161.1/container.te	2021-05-06 14:56:02.027287991 +0200
fc03f6
@@ -114,7 +114,7 @@ mls_trusted_object(container_runtime_t)
fc03f6
 #
fc03f6
 allow container_runtime_domain self:capability { chown kill fowner fsetid mknod net_admin net_bind_service net_raw setfcap sys_resource };
fc03f6
 allow container_runtime_domain self:tun_socket { create_socket_perms relabelto };
fc03f6
-allow container_runtime_domain self:lockdown { confidentiality integrity };
fc03f6
+#allow container_runtime_domain self:lockdown { confidentiality integrity };
fc03f6
 allow container_runtime_domain self:process ~setcurrent;
fc03f6
 allow container_runtime_domain self:passwd rootok;
fc03f6
 allow container_runtime_domain self:fd use;