5124a48bf5
debian ships a wrapper script that moves the ssh-agent socket to /run/user/$UID/openssh_agent Signed-off-by: bauen1 <j2468h@gmail.com>
29 lines
1.4 KiB
Plaintext
29 lines
1.4 KiB
Plaintext
HOME_DIR/\.ssh(/.*)? gen_context(system_u:object_r:ssh_home_t,s0)
|
|
|
|
/etc/ssh/primes -- gen_context(system_u:object_r:sshd_key_t,s0)
|
|
/etc/ssh/ssh_host.*_key -- gen_context(system_u:object_r:sshd_key_t,s0)
|
|
|
|
/usr/bin/ssh -- gen_context(system_u:object_r:ssh_exec_t,s0)
|
|
/usr/bin/ssh-agent -- gen_context(system_u:object_r:ssh_agent_exec_t,s0)
|
|
/usr/bin/ssh-keygen -- gen_context(system_u:object_r:ssh_keygen_exec_t,s0)
|
|
/usr/bin/sshd -- gen_context(system_u:object_r:sshd_exec_t,s0)
|
|
|
|
/usr/lib/openssh/ssh-keysign -- gen_context(system_u:object_r:ssh_keysign_exec_t,s0)
|
|
/usr/lib/ssh/ssh-keysign -- gen_context(system_u:object_r:ssh_keysign_exec_t,s0)
|
|
|
|
/usr/lib/systemd/system/ssh.* -- gen_context(system_u:object_r:sshd_unit_t,s0)
|
|
/usr/lib/systemd/system/sshdgenkeys.* -- gen_context(system_u:object_r:sshd_keygen_unit_t,s0)
|
|
/usr/lib/systemd/system/sshd-keygen.* -- gen_context(system_u:object_r:sshd_keygen_unit_t,s0)
|
|
|
|
/usr/libexec/openssh/ssh-keysign -- gen_context(system_u:object_r:ssh_keysign_exec_t,s0)
|
|
|
|
/usr/sbin/sshd -- gen_context(system_u:object_r:sshd_exec_t,s0)
|
|
|
|
/run/sshd(/.*)? gen_context(system_u:object_r:sshd_runtime_t,s0)
|
|
/run/sshd\.init\.pid -- gen_context(system_u:object_r:sshd_runtime_t,s0)
|
|
/run/sshd\.pid -- gen_context(system_u:object_r:sshd_runtime_t,s0)
|
|
|
|
ifdef(`distro_debian',`
|
|
/run/user/%{USERID}/openssh_agent -s gen_context(system_u:object_r:ssh_agent_tmp_t,s0)
|
|
')
|