diff --git a/refpolicy/policy/modules/kernel/bootloader.fc b/refpolicy/policy/modules/kernel/bootloader.fc index 03becf1..f4dd277 100644 --- a/refpolicy/policy/modules/kernel/bootloader.fc +++ b/refpolicy/policy/modules/kernel/bootloader.fc @@ -11,6 +11,8 @@ /etc/mkinitrd/scripts/.* -- system_u:object_r:bootloader_exec_t +/lib(64)?/modules(/.*)? system_u:object_r:modules_object_t + /usr/sbin/mkinitrd -- system_u:object_r:bootloader_exec_t /sbin/grub.* -- system_u:object_r:bootloader_exec_t