commit: 6b8e7ca613d74efbe08d3ad4aabafe2361cba20c
Author: Laurent Bigonville <bigon <AT> bigon <DOT> be>
AuthorDate: Fri May 3 11:32:04 2019 +0000
Commit: Jason Zaman <perfinion <AT> gentoo <DOT> org>
CommitDate: Sat Jul 13 06:43:14 2019 +0000
URL:
https://gitweb.gentoo.org/proj/hardened-refpolicy.git/commit/?id=6b8e7ca6
Allow logrotate to execute fail2ban-client
fail2ban logrotate configuration runs "fail2ban-client flushlogs" after
rotating the logs
Signed-off-by: Jason Zaman <jason <AT> perfinion.com>
policy/modules/admin/logrotate.te | 1 +
1 file changed, 1 insertion(+)
diff --git a/policy/modules/admin/logrotate.te
b/policy/modules/admin/logrotate.te
index e66f15ef..e6e2a97b 100644
--- a/policy/modules/admin/logrotate.te
+++ b/policy/modules/admin/logrotate.te
@@ -193,6 +193,7 @@ optional_policy(`
')
optional_policy(`
+ fail2ban_domtrans_client(logrotate_t)
fail2ban_stream_connect(logrotate_t)
')