First pass at some SELinux policies for the Shibboleth SP.
[shibboleth/sp.git] / selinux / shibshar.fc.in
diff --git a/selinux/shibshar.fc.in b/selinux/shibshar.fc.in
new file mode 100644 (file)
index 0000000..8c1b4d2
--- /dev/null
@@ -0,0 +1,4 @@
+# Shibboleth SHAR
+@-SBINDIR-@/shar       --      system_u:object_r:shibshar_exec_t
+@-VARRUNDIR-@/shib-shar\.sock  -s      system_u:object_r:shibshar_var_run_t
+