diff --git a/policy/modules/system/systemd.te b/policy/modules/system/systemd.te index 8d4f2b9afc..774826449c 100644 --- a/policy/modules/system/systemd.te +++ b/policy/modules/system/systemd.te @@ -601,7 +601,7 @@ optional_policy(` # allow systemd_networkd_t self:bpf { map_create map_read map_write prog_load prog_run }; -allow systemd_networkd_t self:capability { dac_read_search dac_override net_admin net_raw setuid fowner chown setgid setpcap }; +allow systemd_networkd_t self:capability { dac_read_search dac_override net_admin net_raw setuid fowner chown setgid setpcap sys_admin }; allow systemd_networkd_t self:capability2 bpf; allow systemd_networkd_t self:process { getcap setcap };