From 629aabf63c253be5348b4ed3409e07694927adf6 Mon Sep 17 00:00:00 2001 From: John Turner Date: Tue, 12 Aug 2025 15:31:18 -0400 Subject: move into certfile --- src/file/certfile.cil | 30 ++++++++++++++++++++++++++++-- 1 file changed, 28 insertions(+), 2 deletions(-) (limited to 'src/file') diff --git a/src/file/certfile.cil b/src/file/certfile.cil index 821373e..6eda0f8 100644 --- a/src/file/certfile.cil +++ b/src/file/certfile.cil @@ -2,8 +2,34 @@ ;; SPDX-License-Identifier: Unlicense (block cert - - (blockinherit .file.cert.template)) + + (filecon "/etc/ca-certificates" dir file_context) + (filecon "/etc/ca-certificates/.*" any file_context) + + (filecon "/etc/ca-certificates\.conf" file file_context) + (filecon "/etc/ca-certificates\.conf\..*" file file_context) + + (filecon "/etc/ssl" dir file_context) + (filecon "/etc/ssl/.*" any file_context) + + (filecon "/usr/share/ca-certificates" dir file_context) + (filecon "/usr/share/ca-certificates/.*" any file_context) + + (blockinherit .file.cert.template) + + (macro conf_file_type_transition_file ((type ARG1)) + (call .conf.file_type_transition + (ARG1 file dir "ca-certificates")) + (call .conf.file_type_transition + (ARG1 file dir "ssl")) + (call .conf.file_type_transition + (ARG1 file file "ca-certificates.conf")) + (call .conf.file_type_transition + (ARG1 file file "ca-certificates.conf.dpkg-new"))) + + (macro data_file_type_transition_file ((type ARG1)) + (call .data.file_type_transition + (ARG1 file dir "ca-certificates")))) (in file -- cgit v1.2.3