diff --git a/refpolicy/policy/modules/system/logging.fc b/refpolicy/policy/modules/system/logging.fc new file mode 100644 index 0000000..e7cd849 --- /dev/null +++ b/refpolicy/policy/modules/system/logging.fc @@ -0,0 +1,20 @@ +/var/log(/.*)? system_u:object_r:var_log_t + +# klogd +/sbin/klogd -- system_u:object_r:klogd_exec_t +/usr/sbin/klogd -- system_u:object_r:klogd_exec_t +/var/run/klogd\.pid -- system_u:object_r:klogd_var_run_t + +# syslogd +/sbin/syslogd -- system_u:object_r:syslogd_exec_t +/sbin/minilogd -- system_u:object_r:syslogd_exec_t +/sbin/syslog-ng -- system_u:object_r:syslogd_exec_t +/usr/sbin/syslogd -- system_u:object_r:syslogd_exec_t +/usr/sbin/metalog -- system_u:object_r:syslogd_exec_t +/dev/log -s system_u:object_r:devlog_t +/var/run/log -s system_u:object_r:devlog_t +ifdef(`distro_suse', ` +/var/lib/stunnel/dev/log -s system_u:object_r:devlog_t +') +/var/run/syslogd\.pid -- system_u:object_r:syslogd_var_run_t +/var/run/metalog\.pid -- system_u:object_r:syslogd_var_run_t