From 0cb4974086e0ae874a1d78b0771fa7d9c950a182 Mon Sep 17 00:00:00 2001 From: Zdenek Pytela Date: Fri, 20 Dec 2024 17:55:32 +0100 Subject: [PATCH] Dontaudit request-key read /etc/passwd --- policy/modules/contrib/keyutils.te | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/policy/modules/contrib/keyutils.te b/policy/modules/contrib/keyutils.te index 4749d6a575..07a2e35e64 100644 --- a/policy/modules/contrib/keyutils.te +++ b/policy/modules/contrib/keyutils.te @@ -25,7 +25,7 @@ corecmd_exec_bin(keyutils_request_t) domain_manage_all_domains_keyrings(keyutils_request_t) optional_policy(` - auth_read_passwd(keyutils_request_t) + auth_dontaudit_read_passwd_file(keyutils_request_t) ') optional_policy(`