From 3c72365041f92b1c15ec412b539a8d640495838a Mon Sep 17 00:00:00 2001 From: Sam Hadow Date: Tue, 17 Feb 2026 09:13:03 +0100 Subject: [PATCH] plocate --- plocate.te | 17 +++++++++++++++++ 1 file changed, 17 insertions(+) create mode 100644 plocate.te diff --git a/plocate.te b/plocate.te new file mode 100644 index 0000000..f078fb5 --- /dev/null +++ b/plocate.te @@ -0,0 +1,17 @@ + +module plocate 1.0; + +require { + type systemd_machined_t; + type var_lib_t; + type locate_t; + type sysctl_kernel_t; + class file read; + class unix_stream_socket connectto; + class dir search; +} + +#============= locate_t ============== +allow locate_t sysctl_kernel_t:dir search; +allow locate_t systemd_machined_t:unix_stream_socket connectto; +allow locate_t var_lib_t:file read;