I used below command to generate a policy file:
ausearch -ts today |audit2allow -M sample
it will generate two files: sample.te and sample.pp
the sampel.te contains lines such as:
allow container_t unlabeled_t:dir { add_name create remove_name rename write };
I want edit this line to add a "read" permission:
allow container_t unlabeled_t:dir { add_name create remove_name rename write read};
But I don't know how to compile the .te file into .pp file so that I can apply it (used later in other nodes as well)