diff --git a/policy/flask/access_vectors b/policy/flask/access_vectors index bf24160..468e0fd 100644 --- a/policy/flask/access_vectors +++ b/policy/flask/access_vectors @@ -862,3 +862,12 @@ inherits database implement execute } + +class service +{ + start + stop + status + reload + kill +} diff --git a/policy/flask/security_classes b/policy/flask/security_classes index 14a4799..067ecfc 100644 --- a/policy/flask/security_classes +++ b/policy/flask/security_classes @@ -131,4 +131,8 @@ class db_view # userspace class db_sequence # userspace class db_language # userspace +# systemd services +class service + + # FLASK