add selinux policy for gitea
This commit is contained in:
25
sec-policy/selinux-gitea/files/gitea.fc
Normal file
25
sec-policy/selinux-gitea/files/gitea.fc
Normal file
@@ -0,0 +1,25 @@
|
||||
/usr/bin/gitea -- gen_context(system_u:object_r:gitea_exec_t,s0)
|
||||
|
||||
/etc/gitea(/.*)? gen_context(system_u:object_r:gitea_conf_t,s0)
|
||||
|
||||
/var/lib/gitea(/.*)? gen_context(system_u:object_r:gitea_var_lib_t,s0)
|
||||
|
||||
/var/lib/gitea/.gitconfig -- gen_context(system_u:object_r:gitea_repo_t,s0)
|
||||
|
||||
/var/lib/gitea/conf(/.*)? gen_context(system_u:object_r:gitea_conf_t,s0)
|
||||
|
||||
/var/lib/gitea/gitea-repositories gen_context(system_u:object_r:gitea_repo_home_t,s0)
|
||||
|
||||
/var/lib/gitea/gitea-repositories/[^/]* gen_context(system_u:object_r:gitea_repo_owner_t,s0)
|
||||
|
||||
/var/lib/gitea/gitea-repositories/.*/.*\.git(/.*)? gen_context(system_u:object_r:gitea_repo_t,s0)
|
||||
|
||||
/var/lib/gitea/gitea-repositories/.*/.*\.git/objects(/.*)? gen_context(system_u:object_r:gitea_repo_obj_t,s0)
|
||||
|
||||
/var/lib/gitea/gitea-repositories/.*/.*\.git/hooks(/.*)? gen_context(system_u:object_r:gitea_repo_script_exec_t,s0)
|
||||
|
||||
/var/log/gitea(/.*)? gen_context(system_u:object_r:gitea_log_t,s0)
|
||||
|
||||
/var/run/gitea(/.*)? gen_context(system_u:object_r:gitea_var_run_t,s0)
|
||||
|
||||
/var/run/gitea.pid -- gen_context(system_u:object_r:gitea_var_run_t,s0)
|
||||
Reference in New Issue
Block a user