Blame policy/modules/system/unconfined.fc
|
Chris PeBenito |
17de1b |
# Add programs here which should not be confined by SELinux
|
|
Chris PeBenito |
17de1b |
# e.g.:
|
|
Chris PeBenito |
eac818 |
# /usr/local/bin/appsrv -- gen_context(system_u:object_r:unconfined_exec_t,s0)
|
|
Chris PeBenito |
17de1b |
# For the time being until someone writes a sane policy, we need initrc to transition to unconfined_t
|
|
Chris PeBenito |
350b6a |
/usr/bin/qemu.* -- gen_context(system_u:object_r:unconfined_execmem_exec_t,s0)
|
|
Chris PeBenito |
350b6a |
/usr/bin/valgrind -- gen_context(system_u:object_r:unconfined_execmem_exec_t,s0)
|
|
Chris PeBenito |
eac818 |
/usr/bin/vncserver -- gen_context(system_u:object_r:unconfined_exec_t,s0)
|
|
Chris PeBenito |
17de1b |
|
|
Chris PeBenito |
350b6a |
/usr/lib/ia32el/ia32x_loader -- gen_context(system_u:object_r:unconfined_execmem_exec_t,s0)
|
|
Chris PeBenito |
19ebf0 |
/usr/lib/openoffice\.org.*/program/.+\.bin -- gen_context(system_u:object_r:unconfined_execmem_exec_t,s0)
|
|
Chris PeBenito |
350b6a |
|
|
Chris PeBenito |
d6d16b |
/usr/local/RealPlayer/realplay\.bin -- gen_context(system_u:object_r:unconfined_execmem_exec_t,s0)
|