diff --git a/etc/guix-daemon.cil.in b/etc/guix-daemon.cil.in index 47fd12a214..3e254a2187 100644 --- a/etc/guix-daemon.cil.in +++ b/etc/guix-daemon.cil.in @@ -86,12 +86,15 @@ (allow init_t guix_daemon_t (process (transition))) + (allow init_t + self + (process (execmem))) (allow init_t guix_store_content_t (lnk_file (read))) (allow init_t guix_store_content_t - (file (open read execute))) + (file (open read execute execute_no_trans map))) ;; guix-daemon needs to know the names of users (allow guix_daemon_t