From 46d21f7099b98d0b2df6a75e54757a18cb49e45e Mon Sep 17 00:00:00 2001 From: Eric Renfro Date: Fri, 13 Nov 2015 23:16:19 -0500 Subject: [PATCH] Initial commit --- .gitignore | 3 +++ kolab-local.fc | 0 kolab-local.if | 1 + kolab-local.te | 26 ++++++++++++++++++++++++++ 4 files changed, 30 insertions(+) create mode 100644 .gitignore create mode 100644 kolab-local.fc create mode 100644 kolab-local.if create mode 100644 kolab-local.te diff --git a/.gitignore b/.gitignore new file mode 100644 index 0000000..c77e06c --- /dev/null +++ b/.gitignore @@ -0,0 +1,3 @@ +Makefile +tmp +*.pp diff --git a/kolab-local.fc b/kolab-local.fc new file mode 100644 index 0000000..e69de29 diff --git a/kolab-local.if b/kolab-local.if new file mode 100644 index 0000000..3eb6a30 --- /dev/null +++ b/kolab-local.if @@ -0,0 +1 @@ +## diff --git a/kolab-local.te b/kolab-local.te new file mode 100644 index 0000000..e5a8fd6 --- /dev/null +++ b/kolab-local.te @@ -0,0 +1,26 @@ + +module kolab-local 1.0.5; + +require { + type cyrus_t; + type spamc_exec_t; + type spamd_var_lib_t; + type etc_mail_t; + type var_log_t; + type init_t; + type postfix_master_t; + class file { read write append open execute execute_no_trans getattr ioctl }; + class dir { search }; +} + +#============= cyrus_t ============== +allow cyrus_t init_t:file { read open }; +allow cyrus_t etc_mail_t:dir search; +allow cyrus_t spamc_exec_t:file { read open execute execute_no_trans getattr ioctl }; +allow cyrus_t spamd_var_lib_t:dir search; + + +#============= postfix_master_t ============== +#allow postfix_master_t var_log_t:file { append open }; +allow postfix_master_t var_log_t:file { write open }; +