1# kdevtmpfs accesses devices before ueventd restorecon 2allow kernel device: { blk_file chr_file } { create setattr }; 3allow kernel device:dir { create write add_name }; 4allow kernel self:capability mknod; 5 6