2008-09-24 20:45:59

by Daniel Walsh

[permalink] [raw]
Subject: [refpolicy] services_clamav.patch

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

http://people.fedoraproject.org/~dwalsh/SELinux/F10/services_clamav.patch

Add initrc script support

allow admin to start/stop service

Admin needs admin_pattern on all file types


Add file context for /usr/sbin/clamav-milter and /var/run, /var/log files



clamd needs to read system state

can exec shell

binds and connects to generic ports

can send mail

tcp connecs to clamd port

can read mail
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)
Comment: Using GnuPG with Fedora - http://enigmail.mozdev.org

iEYEARECAAYFAkjapwcACgkQrlYvE4MpobO3zgCfe20CtgQUgOKisLPelfwsDhju
SOIAoJGNJvY4CHh+Mekc/Xf4ghn/B/a9
=dxIz
-----END PGP SIGNATURE-----