diff --git a/globus.te b/globus.te index 1c3a2c5..4d50ef2 100644 --- a/globus.te +++ b/globus.te @@ -12,6 +12,7 @@ require { type http_port_t; type public_content_rw_t; type unreserved_port_t; + type var_t; class tcp_socket name_connect; class dir { add_name create rename reparent rmdir }; class file { append create execute execute_no_trans lock open read setattr unlink write }; @@ -34,3 +35,4 @@ allow init_t user_home_t:dir { create rename reparent rmdir }; allow init_t user_home_t:file { append create execute execute_no_trans lock open read setattr unlink write }; allow init_t public_content_rw_t:file execute; allow init_t public_content_rw_t:file { append create execute execute_no_trans lock open read setattr unlink write }; +allow init_t var_t:file { append create execute execute_no_trans lock open read setattr unlink write }; \ No newline at end of file