From fa23645ca129b3c9860ddd97421130cfc7c149d7 Mon Sep 17 00:00:00 2001 From: Jason Zaman Date: Sat, 12 Jan 2019 16:03:43 +0800 Subject: [PATCH] userdomain: introduce userdom_user_home_dir_filetrans_user_cert Signed-off-by: Jason Zaman --- policy/modules/system/userdomain.if | 29 +++++++++++++++++++++++++++++ 1 file changed, 29 insertions(+) diff --git a/policy/modules/system/userdomain.if b/policy/modules/system/userdomain.if index e71179762..5221bd136 100644 --- a/policy/modules/system/userdomain.if +++ b/policy/modules/system/userdomain.if @@ -2491,6 +2491,35 @@ interface(`userdom_user_home_content_filetrans',` files_search_home($1) ') +######################################## +## +## Automatically use the user_cert_t label for selected resources +## created in a users home directory +## +## +## +## Domain allowed access +## +## +## +## +## Resource type(s) for which the label should be used +## +## +## +## +## Name of the resource that is being created +## +## +# +interface(`userdom_user_home_dir_filetrans_user_cert',` + gen_require(` + type user_cert_t; + ') + + userdom_user_home_dir_filetrans($1, user_cert_t, $2, $3) +') + ######################################## ## ## Create objects in a user home directory