Chris PeBenito 9401ae1
## <summary>SELinux policy for Oident daemon.</summary>
Chris PeBenito 9401ae1
## <desc>
Chris PeBenito 9401ae1
##	

Chris PeBenito 9401ae1
##	Oident daemon is a server that implements the TCP/IP
Chris PeBenito 9401ae1
##	standard IDENT user identification protocol as
Chris PeBenito 9401ae1
##	specified in the RFC 1413 document.
Chris PeBenito 9401ae1
##	

Chris PeBenito 9401ae1
## </desc>
Chris PeBenito 9401ae1
Chris PeBenito 9401ae1
########################################
Chris PeBenito 9401ae1
## <summary>
Chris PeBenito 9401ae1
##	Allow the specified domain to read
Chris PeBenito 9401ae1
##	Oidentd personal configuration files.
Chris PeBenito 9401ae1
## </summary>
Chris PeBenito 9401ae1
## <param name="domain">
Chris PeBenito 9401ae1
##	<summary>
Chris PeBenito 9401ae1
##	Domain allowed access.
Chris PeBenito 9401ae1
##	</summary>
Chris PeBenito 9401ae1
## </param>
Chris PeBenito 9401ae1
#
Chris PeBenito 9401ae1
interface(`oident_read_user_content', `
Chris PeBenito 9401ae1
	gen_require(`
Chris PeBenito 9401ae1
		type oidentd_home_t;
Chris PeBenito 9401ae1
	')
Chris PeBenito 9401ae1
Chris PeBenito 9401ae1
	allow $1 oidentd_home_t:file read_file_perms;
Chris PeBenito 9401ae1
	userdom_search_user_home_dirs($1)
Chris PeBenito 9401ae1
')
Chris PeBenito 9401ae1
Chris PeBenito 9401ae1
########################################
Chris PeBenito 9401ae1
## <summary>
Chris PeBenito 9401ae1
##	Allow the specified domain to create, read, write, and delete
Chris PeBenito 9401ae1
##	Oidentd personal configuration files.
Chris PeBenito 9401ae1
## </summary>
Chris PeBenito 9401ae1
## <param name="domain">
Chris PeBenito 9401ae1
##	<summary>
Chris PeBenito 9401ae1
##	Domain allowed access.
Chris PeBenito 9401ae1
##	</summary>
Chris PeBenito 9401ae1
## </param>
Chris PeBenito 9401ae1
#
Chris PeBenito 9401ae1
interface(`oident_manage_user_content', `
Chris PeBenito 9401ae1
	gen_require(`
Chris PeBenito 9401ae1
		type oidentd_home_t;
Chris PeBenito 9401ae1
	')
Chris PeBenito 9401ae1
Chris PeBenito 9401ae1
	allow $1 oidentd_home_t:file manage_file_perms;
Chris PeBenito 9401ae1
	userdom_search_user_home_dirs($1)
Chris PeBenito 9401ae1
')
Chris PeBenito 9401ae1
Chris PeBenito 9401ae1
########################################
Chris PeBenito 9401ae1
## <summary>
Chris PeBenito 9401ae1
##	Allow the specified domain to relabel
Chris PeBenito 9401ae1
##	Oidentd personal configuration files.
Chris PeBenito 9401ae1
## </summary>
Chris PeBenito 9401ae1
## <param name="domain">
Chris PeBenito 9401ae1
##	<summary>
Chris PeBenito 9401ae1
##	Domain allowed access.
Chris PeBenito 9401ae1
##	</summary>
Chris PeBenito 9401ae1
## </param>
Chris PeBenito 9401ae1
#
Chris PeBenito 9401ae1
interface(`oident_relabel_user_content', `
Chris PeBenito 9401ae1
	gen_require(`
Chris PeBenito 9401ae1
		type oidentd_home_t;
Chris PeBenito 9401ae1
	')
Chris PeBenito 9401ae1
Chris PeBenito 9401ae1
	allow $1 oidentd_home_t:file relabel_file_perms;
Chris PeBenito 9401ae1
	userdom_search_user_home_dirs($1)
Chris PeBenito 9401ae1
')