Chris PeBenito 17de1b
# Add programs here which should not be confined by SELinux
Chris PeBenito 17de1b
# e.g.:
Chris PeBenito eac818
# /usr/local/bin/appsrv		--	gen_context(system_u:object_r:unconfined_exec_t,s0)
Chris PeBenito 17de1b
# For the time being until someone writes a sane policy, we need initrc to transition to unconfined_t
Chris PeBenito 350b6a
/usr/bin/qemu.*			--	gen_context(system_u:object_r:unconfined_execmem_exec_t,s0)
Chris PeBenito 350b6a
/usr/bin/valgrind 		--	gen_context(system_u:object_r:unconfined_execmem_exec_t,s0)
Chris PeBenito eac818
/usr/bin/vncserver		--	gen_context(system_u:object_r:unconfined_exec_t,s0)
Chris PeBenito 17de1b
Chris PeBenito 350b6a
/usr/lib/ia32el/ia32x_loader 	--	gen_context(system_u:object_r:unconfined_execmem_exec_t,s0)
Chris PeBenito 19ebf0
/usr/lib/openoffice\.org.*/program/.+\.bin -- gen_context(system_u:object_r:unconfined_execmem_exec_t,s0)
Chris PeBenito 350b6a
Chris PeBenito d6d16b
/usr/local/RealPlayer/realplay\.bin --	gen_context(system_u:object_r:unconfined_execmem_exec_t,s0)