From 09e68fdd527e8e41cc618a0b3e8700528671613c Mon Sep 17 00:00:00 2001 From: Andrew Hsu Date: Fri, 2 Dec 2016 14:18:58 -0800 Subject: [PATCH] add extra docker.te lines from rhel7.3 docker.spec Signed-off-by: Andrew Hsu --- contrib/selinux-centos-7/docker-engine-selinux/docker.te | 3 +++ 1 file changed, 3 insertions(+) diff --git a/contrib/selinux-centos-7/docker-engine-selinux/docker.te b/contrib/selinux-centos-7/docker-engine-selinux/docker.te index d2c3fe4dfb..22fa91f45f 100644 --- a/contrib/selinux-centos-7/docker-engine-selinux/docker.te +++ b/contrib/selinux-centos-7/docker-engine-selinux/docker.te @@ -420,3 +420,6 @@ files_read_etc_files(docker_auth_t) miscfiles_read_localization(docker_auth_t) sysnet_dns_name_resolve(docker_auth_t) + +kernel_unlabeled_domtrans(docker_t, spc_t) +kernel_unlabeled_entry_type(spc_t)