Add sslh policy
authorRalf Ertzinger <ralf@skytale.net>
Sat, 12 Jun 2021 14:39:27 +0000 (14:39 +0000)
committerRalf Ertzinger <ralf@skytale.net>
Sat, 12 Jun 2021 14:39:27 +0000 (14:39 +0000)
sslh/sslh.fc [new file with mode: 0644]
sslh/sslh.if [new symlink]
sslh/sslh.te [new file with mode: 0644]

diff --git a/sslh/sslh.fc b/sslh/sslh.fc
new file mode 100644 (file)
index 0000000..e69de29
diff --git a/sslh/sslh.if b/sslh/sslh.if
new file mode 120000 (symlink)
index 0000000..196caaa
--- /dev/null
@@ -0,0 +1 @@
+../include/_sky_.if
\ No newline at end of file
diff --git a/sslh/sslh.te b/sslh/sslh.te
new file mode 100644 (file)
index 0000000..bfc8263
--- /dev/null
@@ -0,0 +1,8 @@
+policy_module(sslh, 0.1.3)
+
+require {
+    type sslh_t;
+}
+
+# SSLH needs net_admin
+allow sslh_t self:capability net_admin;