## SSL certificate requesting tool certbot AKA letsencrypt.
########################################
##
## Execute certbot/letsencrypt in the certbot
## domain.
##
##
##
## Domain allowed to transition.
##
##
#
interface(`certbot_domtrans',`
gen_require(`
type certbot_t, certbot_exec_t;
')
domtrans_pattern($1, certbot_exec_t, certbot_t)
')
########################################
##
## Execute certbot/letsencrypt in the certbot
## domain, and allow the specified role
## the firstboot domain.
##
##
##
## Domain allowed to transition.
##
##
##
##
## Role allowed access.
##
##
#
interface(`certbot_run',`
gen_require(`
type certbot_t;
')
certbot_domtrans($1)
role $2 types certbot_t;
')