ansible-roles/roles/squid/files/ufdb.te

18 lines
470 B
Plaintext
Raw Normal View History

2023-09-13 23:00:21 +02:00
module ufdb 1.3;
2021-12-01 19:13:34 +01:00
require {
type initrc_tmp_t;
type initrc_t;
type tmp_t;
type squid_t;
2023-09-13 23:00:21 +02:00
type unconfined_service_t;
2021-12-01 19:13:34 +01:00
class sock_file write;
class unix_stream_socket connectto;
}
#============= squid_t ==============
allow squid_t initrc_t:unix_stream_socket connectto;
2023-09-13 23:00:21 +02:00
allow squid_t unconfined_service_t:unix_stream_socket connectto;
2021-12-01 19:13:34 +01:00
allow squid_t initrc_tmp_t:sock_file write;
allow squid_t tmp_t:sock_file write;