From bdc8508a69bc2dec32433c88ab229b684fc1c77f Mon Sep 17 00:00:00 2001 From: Dan Walsh Date: Mar 27 2014 18:42:34 +0000 Subject: Add policy for geard in docker world --- diff --git a/modules-targeted-contrib.conf b/modules-targeted-contrib.conf index 30e127c..c658d41 100644 --- a/modules-targeted-contrib.conf +++ b/modules-targeted-contrib.conf @@ -2487,6 +2487,13 @@ pcp = module geoclue = module # Layer: contrib +# Module: gear +# +# Add policy for Geard, for orchistrating containers +# +gear = module + +# Layer: contrib # Module: rkhunter # # rkhunter policy for /var/lib/rkhunter diff --git a/permissivedomains.te b/permissivedomains.te index 4bb16b4..b36e7d2 100644 --- a/permissivedomains.te +++ b/permissivedomains.te @@ -20,3 +20,10 @@ optional_policy(` ') permissive systemd_networkd_t; ') + +optional_policy(` + gen_require(` + type gear_t; + ') + permissive gear_t; +')