aboutgitcodebugslistschat
path: root/contrib/selinux/passt.if
diff options
context:
space:
mode:
Diffstat (limited to 'contrib/selinux/passt.if')
-rw-r--r--contrib/selinux/passt.if17
1 files changed, 17 insertions, 0 deletions
diff --git a/contrib/selinux/passt.if b/contrib/selinux/passt.if
new file mode 100644
index 0000000..3ccb7f4
--- /dev/null
+++ b/contrib/selinux/passt.if
@@ -0,0 +1,17 @@
+# SPDX-License-Identifier: AGPL-3.0-or-later
+#
+# PASST - Plug A Simple Socket Transport
+# for qemu/UNIX domain socket mode
+#
+# contrib/selinux/passt.if - SELinux profile example: Interface File for passt
+#
+# Copyright (c) 2022 Red Hat GmbH
+# Author: Stefano Brivio <sbrivio@redhat.com>
+
+interface('passt_read_data','
+ gen_require(`
+ type passt_data_t;
+ ')
+ allow $1 passt_t:dir { search add_name };
+ allow $1 passt_t:file { open read getattr };
+')