aboutsummaryrefslogtreecommitdiff
diff options
context:
space:
mode:
Diffstat (limited to 'policy/modules/services/openvpn.fc')
-rw-r--r--policy/modules/services/openvpn.fc15
1 files changed, 15 insertions, 0 deletions
diff --git a/policy/modules/services/openvpn.fc b/policy/modules/services/openvpn.fc
new file mode 100644
index 00000000..7a00b7a8
--- /dev/null
+++ b/policy/modules/services/openvpn.fc
@@ -0,0 +1,15 @@
+/etc/openvpn(/.*)? gen_context(system_u:object_r:openvpn_etc_t,s0)
+/etc/openvpn/ipp\.txt -- gen_context(system_u:object_r:openvpn_etc_rw_t,s0)
+/etc/openvpn/openvpn-status\.log.* -- gen_context(system_u:object_r:openvpn_status_t,s0)
+
+/etc/rc\.d/init\.d/openvpn -- gen_context(system_u:object_r:openvpn_initrc_exec_t,s0)
+
+/usr/bin/openvpn -- gen_context(system_u:object_r:openvpn_exec_t,s0)
+
+/usr/sbin/openvpn -- gen_context(system_u:object_r:openvpn_exec_t,s0)
+
+/var/log/openvpn-status\.log.* -- gen_context(system_u:object_r:openvpn_status_t,s0)
+/var/log/openvpn.* gen_context(system_u:object_r:openvpn_var_log_t,s0)
+
+/run/openvpn(/.*)? gen_context(system_u:object_r:openvpn_var_run_t,s0)
+/run/openvpn\.client.* -- gen_context(system_u:object_r:openvpn_var_run_t,s0)