Chris PeBenito 17de1b
# temporary hack till genhomedircon is fixed
Chris PeBenito 17de1b
ifdef(`targeted_policy',`
Chris PeBenito 17de1b
HOME_DIR/((www)|(web)|(public_html))(/.+)? gen_context(system_u:object_r:httpd_user_content_t,s0)
Chris PeBenito 17de1b
',`
Chris PeBenito 17de1b
HOME_DIR/((www)|(web)|(public_html))(/.+)? gen_context(system_u:object_r:httpd_ROLE_content_t,s0)
Chris PeBenito 17de1b
')
Chris PeBenito 17de1b
Chris PeBenito 17de1b
/etc/apache(2)?(/.*)?			gen_context(system_u:object_r:httpd_config_t,s0)
Chris PeBenito 17de1b
/etc/apache-ssl(2)?(/.*)?		gen_context(system_u:object_r:httpd_config_t,s0)
Chris PeBenito 17de1b
/etc/htdig(/.*)?			gen_context(system_u:object_r:httpd_sys_content_t,s0)
Chris PeBenito 17de1b
/etc/httpd			-d	gen_context(system_u:object_r:httpd_config_t,s0)
Chris PeBenito 17de1b
/etc/httpd/conf.*			gen_context(system_u:object_r:httpd_config_t,s0)
Chris PeBenito 17de1b
/etc/httpd/logs				gen_context(system_u:object_r:httpd_log_t,s0)
Chris PeBenito 17de1b
/etc/httpd/modules			gen_context(system_u:object_r:httpd_modules_t,s0)
Chris PeBenito 17de1b
/etc/vhosts			--	gen_context(system_u:object_r:httpd_config_t,s0)
Chris PeBenito 17de1b
Chris PeBenito 17de1b
/srv/([^/]*/)?www(/.*)?			gen_context(system_u:object_r:httpd_sys_content_t,s0)
Chris PeBenito 17de1b
/srv/gallery2(/.*)?			gen_context(system_u:object_r:httpd_sys_content_t,s0)
Chris PeBenito 17de1b
Chris PeBenito 17de1b
/usr/bin/htsslpass 		--	gen_context(system_u:object_r:httpd_helper_exec_t,s0)
Chris PeBenito 17de1b
Chris PeBenito 17de1b
/usr/lib/apache-ssl/.+		--	gen_context(system_u:object_r:httpd_exec_t,s0)
Chris PeBenito 17de1b
/usr/lib/cgi-bin(/.*)?			gen_context(system_u:object_r:httpd_sys_script_exec_t,s0)
Chris PeBenito 19ebf0
/usr/lib/squid/cachemgr\.cgi	--	gen_context(system_u:object_r:httpd_exec_t,s0)
Chris PeBenito 17de1b
/usr/lib(64)?/apache(/.*)?		gen_context(system_u:object_r:httpd_modules_t,s0)
Chris PeBenito 17de1b
/usr/lib(64)?/apache2/modules(/.*)?	gen_context(system_u:object_r:httpd_modules_t,s0)
Chris PeBenito 17de1b
/usr/lib(64)?/apache(2)?/suexec(2)? --	gen_context(system_u:object_r:httpd_suexec_exec_t,s0)
Chris PeBenito 17de1b
/usr/lib(64)?/cgi-bin/(nph-)?cgiwrap(d)? -- gen_context(system_u:object_r:httpd_suexec_exec_t,s0)
Chris PeBenito 17de1b
/usr/lib(64)?/httpd(/.*)?		gen_context(system_u:object_r:httpd_modules_t,s0)
Chris PeBenito 17de1b
Chris PeBenito 17de1b
/usr/sbin/apache(2)?		--	gen_context(system_u:object_r:httpd_exec_t,s0)
Chris PeBenito 17de1b
/usr/sbin/apache-ssl(2)?	--	gen_context(system_u:object_r:httpd_exec_t,s0)
Chris PeBenito 17de1b
/usr/sbin/httpd(\.worker)?	--	gen_context(system_u:object_r:httpd_exec_t,s0)
Chris PeBenito 17de1b
/usr/sbin/rotatelogs		--	gen_context(system_u:object_r:httpd_rotatelogs_exec_t,s0)
Chris PeBenito 17de1b
/usr/sbin/suexec		--	gen_context(system_u:object_r:httpd_suexec_exec_t,s0)
Chris PeBenito 17de1b
Chris PeBenito 17de1b
ifdef(`distro_suse', `
Chris PeBenito 17de1b
/usr/sbin/httpd2-.*		--	gen_context(system_u:object_r:httpd_exec_t,s0)
Chris PeBenito 17de1b
')
Chris PeBenito 17de1b
Chris PeBenito 17de1b
/usr/share/htdig(/.*)?			gen_context(system_u:object_r:httpd_sys_content_t,s0)
Chris PeBenito 17de1b
/usr/share/openca/htdocs(/.*)?		gen_context(system_u:object_r:httpd_sys_content_t,s0)
Chris PeBenito 17de1b
/usr/share/selinux-policy([^/]*)?/html(/.*)? gen_context(system_u:object_r:httpd_sys_content_t,s0)
Chris PeBenito 17de1b
Chris PeBenito 17de1b
/var/cache/httpd(/.*)?			gen_context(system_u:object_r:httpd_cache_t,s0)
Chris PeBenito 17de1b
/var/cache/mason(/.*)?			gen_context(system_u:object_r:httpd_cache_t,s0)
Chris PeBenito 17de1b
/var/cache/mod_ssl(/.*)?		gen_context(system_u:object_r:httpd_cache_t,s0)
Chris PeBenito 17de1b
/var/cache/php-eaccelerator(/.*)?	gen_context(system_u:object_r:httpd_cache_t,s0)
Chris PeBenito 17de1b
/var/cache/php-mmcache(/.*)?		gen_context(system_u:object_r:httpd_cache_t,s0)
Chris PeBenito 17de1b
/var/cache/rt3(/.*)?			gen_context(system_u:object_r:httpd_cache_t,s0)
Chris PeBenito 17de1b
/var/cache/ssl.*\.sem		--	gen_context(system_u:object_r:httpd_cache_t,s0)
Chris PeBenito 17de1b
Chris PeBenito 17de1b
/var/lib/cacti/rra(/.*)?		gen_context(system_u:object_r:httpd_sys_content_t,s0)
Chris PeBenito 17de1b
/var/lib/dav(/.*)?			gen_context(system_u:object_r:httpd_var_lib_t,s0)
Chris PeBenito 17de1b
/var/lib/htdig(/.*)?			gen_context(system_u:object_r:httpd_sys_content_t,s0)
Chris PeBenito 17de1b
/var/lib/httpd(/.*)?			gen_context(system_u:object_r:httpd_var_lib_t,s0)
Chris PeBenito 17de1b
/var/lib/php/session(/.*)?		gen_context(system_u:object_r:httpd_var_run_t,s0)
Chris PeBenito 17de1b
/var/lib/squirrelmail/prefs(/.*)?	gen_context(system_u:object_r:httpd_squirrelmail_t,s0)
Chris PeBenito 17de1b
Chris PeBenito 17de1b
/var/log/apache(2)?(/.*)?		gen_context(system_u:object_r:httpd_log_t,s0)
Chris PeBenito 17de1b
/var/log/apache-ssl(2)?(/.*)?		gen_context(system_u:object_r:httpd_log_t,s0)
Chris PeBenito 17de1b
/var/log/cacti(/.*)?			gen_context(system_u:object_r:httpd_log_t,s0)
Chris PeBenito 17de1b
/var/log/cgiwrap\.log.*		--	gen_context(system_u:object_r:httpd_log_t,s0)
Chris PeBenito 17de1b
/var/log/httpd(/.*)?			gen_context(system_u:object_r:httpd_log_t,s0)
Chris PeBenito 17de1b
ifdef(`distro_debian', `
Chris PeBenito 17de1b
/var/log/horde2(/.*)?			gen_context(system_u:object_r:httpd_log_t,s0)
Chris PeBenito 17de1b
')
Chris PeBenito 17de1b
Chris PeBenito 17de1b
/var/run/apache.*			gen_context(system_u:object_r:httpd_var_run_t,s0)
Chris PeBenito 17de1b
/var/run/gcache_port		-s	gen_context(system_u:object_r:httpd_var_run_t,s0)
Chris PeBenito 17de1b
/var/run/httpd.*			gen_context(system_u:object_r:httpd_var_run_t,s0)
Chris PeBenito 17de1b
Chris PeBenito 17de1b
/var/spool/gosa(/.*)?			gen_context(system_u:object_r:httpd_sys_script_rw_t,s0)
Chris PeBenito 17de1b
/var/spool/squirrelmail(/.*)?		gen_context(system_u:object_r:squirrelmail_spool_t,s0)
Chris PeBenito 17de1b
ifdef(`strict_policy',`
Chris PeBenito 17de1b
/var/spool/cron/apache		-- 	gen_context(system_u:object_r:user_cron_spool_t,s0)
Chris PeBenito 17de1b
')
Chris PeBenito 17de1b
Chris PeBenito 17de1b
/var/www(/.*)?				gen_context(system_u:object_r:httpd_sys_content_t,s0)
Chris PeBenito 17de1b
/var/www/cgi-bin(/.*)?			gen_context(system_u:object_r:httpd_sys_script_exec_t,s0)
Chris PeBenito 17de1b
/var/www/icons(/.*)?			gen_context(system_u:object_r:httpd_sys_content_t,s0)
Chris PeBenito 17de1b
/var/www/perl(/.*)?			gen_context(system_u:object_r:httpd_sys_script_exec_t,s0)