diff --git a/refpolicy/policy/modules/system/udev.te b/refpolicy/policy/modules/system/udev.te index a234d81..34e0311 100644 --- a/refpolicy/policy/modules/system/udev.te +++ b/refpolicy/policy/modules/system/udev.te @@ -7,9 +7,10 @@ policy_module(udev,1.0) # Declarations # -type udev_t; # nscd_client_domain, privowner +type udev_t; # nscd_client_domain type udev_exec_t; type udev_helper_exec_t; +kernel_make_object_identity_change_constraint_exception(udev_t) domain_make_daemon_domain(udev_t,udev_exec_t) domain_make_entrypoint_file(udev_t,udev_helper_exec_t) domain_make_file_descriptors_widely_inheritable(udev_t)