commit: 19677a6d7b12b0568254bbfa6451ea50e58efce6 Author: Sven Vermeulen <sven.vermeulen <AT> siphos <DOT> be> AuthorDate: Wed Dec 31 16:09:57 2014 +0000 Commit: Sven Vermeulen <swift <AT> gentoo <DOT> org> CommitDate: Fri Jan 2 17:18:12 2015 +0000 URL: http://sources.gentoo.org/gitweb/?p=proj/hardened-refpolicy.git;a=commit;h=19677a6d
Execute courier helper script after authentication After succesful authentication, the IMAP daemon will attempt to execute a helper script called /usr/lib64/courier-imap/courier-imapd.indirect. This helper script is to initiate the user session. Signed-off-by: Sven Vermeulen <sven.vermeulen <AT> siphos.be> --- policy/modules/contrib/courier.te | 2 ++ 1 file changed, 2 insertions(+) diff --git a/policy/modules/contrib/courier.te b/policy/modules/contrib/courier.te index 29057a7..e3a3b84 100644 --- a/policy/modules/contrib/courier.te +++ b/policy/modules/contrib/courier.te @@ -144,6 +144,8 @@ stream_connect_pattern(courier_pop_t, courier_var_lib_t, courier_var_lib_t, cour domtrans_pattern(courier_pop_t, courier_authdaemon_exec_t, courier_authdaemon_t) +corecmd_exec_shell(courier_pop_t) + miscfiles_read_localization(courier_pop_t) userdom_manage_user_home_content_files(courier_pop_t)