ima-policy-hashed: add CGROUP2_SUPER_MAGIC fsmagic

This fixes following systemd boot issues:
[    7.455580] systemd[1]: Failed to create /init.scope control group: Permission denied
[    7.457677] systemd[1]: Failed to allocate manager object: Permission denied
[!!!!!!] Failed to allocate manager object.
[    7.459270] systemd[1]: Freezing execution.

Signed-off-by: Ming Liu <liu.ming50@gmail.com>
Signed-off-by: Armin Kuster <akuster808@gmail.com>
This commit is contained in:
Ming Liu
2021-03-01 13:35:58 +01:00
committed by Armin Kuster
parent bf83dca254
commit 3daf99fd13

View File

@@ -53,6 +53,9 @@ dont_measure fsmagic=0x43415d53
# CGROUP_SUPER_MAGIC # CGROUP_SUPER_MAGIC
dont_appraise fsmagic=0x27e0eb dont_appraise fsmagic=0x27e0eb
dont_measure fsmagic=0x27e0eb dont_measure fsmagic=0x27e0eb
# CGROUP2_SUPER_MAGIC
dont_appraise fsmagic=0x63677270
dont_measure fsmagic=0x63677270
# EFIVARFS_MAGIC # EFIVARFS_MAGIC
dont_appraise fsmagic=0xde5e81e4 dont_appraise fsmagic=0xde5e81e4
dont_measure fsmagic=0xde5e81e4 dont_measure fsmagic=0xde5e81e4