From 00bf3c85d04f58a86f96ff63a3bd7eeaaa5f76fe Mon Sep 17 00:00:00 2001 From: Kenfe-Mickael Laventure Date: Mon, 21 Mar 2016 16:27:59 -0700 Subject: [PATCH] Give selinux pcp_pmcd_t type access to /var/lib/docker Signed-off-by: Kenfe-Mickael Laventure --- contrib/docker-engine-selinux/docker.te | 7 +++++++ 1 file changed, 7 insertions(+) diff --git a/contrib/docker-engine-selinux/docker.te b/contrib/docker-engine-selinux/docker.te index 5adfe23fe9..999742f302 100644 --- a/contrib/docker-engine-selinux/docker.te +++ b/contrib/docker-engine-selinux/docker.te @@ -405,3 +405,10 @@ optional_policy(` dontaudit svirt_sandbox_domain domain:key {search link}; ') + +optional_policy(` + gen_require(` + type pcp_pmcd_t; + ') + docker_manage_lib_files(pcp_pmcd_t) +')