diff --git a/untrusted_app.te b/untrusted_app.te index 7aedc39156c83d6512bb0519f5bbe22b70668487..a92323e96a1edb4366fee7c7c74738ea5844e1ab 100644 --- a/untrusted_app.te +++ b/untrusted_app.te @@ -92,6 +92,8 @@ dontaudit untrusted_app exec_type:file getattr; # TODO: access of /proc/meminfo, give specific label or switch to # using meminfo service allow untrusted_app proc:file r_file_perms; +# access /proc/net/xt_qtguid/stats +r_dir_file(untrusted_app, proc_net) ### ### neverallow rules