haproxy/admin/selinux
Willy Tarreau 233e868895 CONTRIB: move some admin-related sub-projects to admin/
The following components were moved to admin/ because they're generally
used in field by admins:

  iprange/  netsnmp-perl/  selinux/  systemd/  wireshark-dissectors/
  syntax-highlight/ release-estimator/
2021-04-02 17:48:42 +02:00
..
README CONTRIB: move some admin-related sub-projects to admin/ 2021-04-02 17:48:42 +02:00
haproxy.fc CONTRIB: move some admin-related sub-projects to admin/ 2021-04-02 17:48:42 +02:00
haproxy.if CONTRIB: move some admin-related sub-projects to admin/ 2021-04-02 17:48:42 +02:00
haproxy.te CONTRIB: move some admin-related sub-projects to admin/ 2021-04-02 17:48:42 +02:00

README

This directory includes an selinux policy for haproxy. It assumes
the following file locations:

	/usr/sbin/haproxy		-- binary
	/etc/haproxy/haproxy\.cfg	-- configuration
	/var/run/haproxy\.pid		-- pid-file
	/var/run/haproxy\.sock(.*)	-- stats socket
	/var/empty/haproxy		-- chroot dir

To build and load it on RHEL5 you'll need the "selinux-policy-devel" package,
and from within this directory run:

	make -f /usr/share/selinux/devel/Makefile
	sudo semodule -i haproxy.pp
	restorecon /usr/sbin/haproxy /etc/haproxy/haproxy.cfg /var/run/haproxy.pid /var/run/haproxy.sock*


Feedback to Jan-Frode Myklebust <janfrode@tanso.no> is much appreciated,