avc denials when iptables systemd unit is started
Issue
When legacy commands iptables.init and ip6tables.init from the iptables-services package are used, SELinux policy prevents the start script from accessing /etc/modprobe.d directory and from running plymouth commands.
Environment
RHEL 7
iptables-services-1.4.21-17.el7
selinux-policy-3.13.1-102.el7_3.13
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.