From: Ralf Ertzinger Date: Sat, 12 Jun 2021 14:39:27 +0000 (+0000) Subject: Add sslh policy X-Git-Url: https://git.camperquake.de/gitweb.cgi?p=selinux.git;a=commitdiff_plain;h=ce01e194202faac725c8608f0719bdc69ca8e97c Add sslh policy --- diff --git a/sslh/sslh.fc b/sslh/sslh.fc new file mode 100644 index 0000000..e69de29 diff --git a/sslh/sslh.if b/sslh/sslh.if new file mode 120000 index 0000000..196caaa --- /dev/null +++ b/sslh/sslh.if @@ -0,0 +1 @@ +../include/_sky_.if \ No newline at end of file diff --git a/sslh/sslh.te b/sslh/sslh.te new file mode 100644 index 0000000..bfc8263 --- /dev/null +++ b/sslh/sslh.te @@ -0,0 +1,8 @@ +policy_module(sslh, 0.1.3) + +require { + type sslh_t; +} + +# SSLH needs net_admin +allow sslh_t self:capability net_admin;