diff --git a/bsp/non_plat/ipsec_mon.te b/bsp/non_plat/ipsec_mon.te index 363b5ec..812d531 100644 --- a/bsp/non_plat/ipsec_mon.te +++ b/bsp/non_plat/ipsec_mon.te @@ -9,6 +9,8 @@ type ipsec_mon_exec, exec_type, file_type, vendor_file_type; init_daemon_domain(ipsec_mon) +net_domain(ipsec_mon) + allow ipsec_mon self:netlink_xfrm_socket { write bind create read nlmsg_read nlmsg_write}; allow ipsec_mon ims_ipsec_data_file:dir w_dir_perms; allow ipsec_mon ims_ipsec_data_file:file create_file_perms;