From 1137f639bb3cb0b7257ffe8348abbd93882ce37b Mon Sep 17 00:00:00 2001 From: Zdenek Pytela Date: Wed, 24 Aug 2022 18:49:25 +0200 Subject: [PATCH] Add gpg_filetrans_admin_home_content() interface --- policy/modules/contrib/gpg.if | 18 ++++++++++++++++++ 1 file changed, 18 insertions(+) diff --git a/policy/modules/contrib/gpg.if b/policy/modules/contrib/gpg.if index 55fbfd996e..6e5aa43576 100644 --- a/policy/modules/contrib/gpg.if +++ b/policy/modules/contrib/gpg.if @@ -281,6 +281,24 @@ interface(`gpg_filetrans_home_content',` userdom_user_home_dir_filetrans($1, gpg_secret_t, dir, ".gnupg") ') +######################################## +## +## Transition to gpg named admin home content +## +## +## +## Domain allowed access. +## +## +# +interface(`gpg_filetrans_admin_home_content',` + gen_require(` + type gpg_secret_t; + ') + + userdom_admin_home_dir_filetrans($1, gpg_secret_t, dir, ".gnupg") +') + ######################################## ## ## Connected to gpg_agent_t unix stream socket.