## Open Certificate Authority. ######################################## ## ## Execute the openca with ## a domain transition. ## ## ## ## Domain allowed to transition. ## ## # interface(`openca_domtrans',` gen_require(` type openca_ca_t, openca_ca_exec_t, openca_usr_share_t; ') files_search_usr($1) allow $1 openca_usr_share_t:dir search_dir_perms; domtrans_pattern($1, openca_ca_exec_t, openca_ca_t) ') ######################################## ## ## Send generic signals to openca. ## ## ## ## Domain allowed access. ## ## # interface(`openca_signal',` gen_require(` type openca_ca_t; ') allow $1 openca_ca_t:process signal; ') ######################################## ## ## Send stop signals to openca. ## ## ## ## Domain allowed access. ## ## # interface(`openca_sigstop',` gen_require(` type openca_ca_t; ') allow $1 openca_ca_t:process sigstop; ') ######################################## ## ## Send kill signals to openca. ## ## ## ## Domain allowed access. ## ## # interface(`openca_kill',` gen_require(` type openca_ca_t; ') allow $1 openca_ca_t:process sigkill; ')