diff --git a/data/selinux/snappy.te b/data/selinux/snappy.te index 4b498999d13..0862985aabb 100644 --- a/data/selinux/snappy.te +++ b/data/selinux/snappy.te @@ -575,8 +575,9 @@ allow snappy_mount_t lib_t:dir mounton; # mount things labeled usr_t from the host allow snappy_mount_t usr_t:dir mounton; -# allow mounting on top of /var/lib +# allow mounting on top of /var and /var/lib allow snappy_mount_t var_lib_t:dir mounton; +allow snappy_mount_t var_t:dir mounton; # mount and unmount on top of snaps allow snappy_mount_t snappy_snap_t:dir mounton;