diff --git a/experimental/selinux/fenrir.te b/experimental/selinux/fenrir.te new file mode 100644 index 00000000..2a3ced13 --- /dev/null +++ b/experimental/selinux/fenrir.te @@ -0,0 +1,10 @@ +module fenrir 1.0; + +require { + type user_home_t; + type init_t; + class file { execute execute_no_trans open read }; +} + +#============= init_t ============== +allow init_t user_home_t:file { execute execute_no_trans open read };