2008-09-24 20:38:47

by Daniel Walsh

[permalink] [raw]
Subject: [refpolicy] services_dovecot.patch

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

http://people.fedoraproject.org/~dwalsh/SELinux/F10/services_dovecot.patch

Add initrc script support

allow admin to start/stop service

Admin needs admin_pattern on all file types



Add support for dovecod_deliver policy

additional spool and log file context

dovecot uses kerberos keytab

auth needs chown and dac_override

auth needs to connect to dovecot_t

creates files in /tmp

creates its own log files

greates a stream socket in /var/run

auth sends syslog and audit messages

auth reads usr_t files

auth can use mysql

auth can authenticate nis passwords

auth can use users kerberos tgt

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)
Comment: Using GnuPG with Fedora - http://enigmail.mozdev.org

iEYEARECAAYFAkjapVcACgkQrlYvE4MpobN1dQCfaf1iEfx1pX+IDlRdHQFQrUMz
DQkAoIk1Dnr8Rg5hEwwEbcnkcikCf01O
=55uA
-----END PGP SIGNATURE-----