haproxy/admin/selinux/README
Willy Tarreau 233e868895 CONTRIB: move some admin-related sub-projects to admin/
The following components were moved to admin/ because they're generally
used in field by admins:

  iprange/  netsnmp-perl/  selinux/  systemd/  wireshark-dissectors/
  syntax-highlight/ release-estimator/
2021-04-02 17:48:42 +02:00

19 lines
648 B
Plaintext

This directory includes an selinux policy for haproxy. It assumes
the following file locations:
/usr/sbin/haproxy -- binary
/etc/haproxy/haproxy\.cfg -- configuration
/var/run/haproxy\.pid -- pid-file
/var/run/haproxy\.sock(.*) -- stats socket
/var/empty/haproxy -- chroot dir
To build and load it on RHEL5 you'll need the "selinux-policy-devel" package,
and from within this directory run:
make -f /usr/share/selinux/devel/Makefile
sudo semodule -i haproxy.pp
restorecon /usr/sbin/haproxy /etc/haproxy/haproxy.cfg /var/run/haproxy.pid /var/run/haproxy.sock*
Feedback to Jan-Frode Myklebust <janfrode@tanso.no> is much appreciated,