2012-01-10 19:06:24 +01:00
|
|
|
# Last Modified: Tue Jan 3 00:17:40 2012
|
2020-05-05 00:08:39 -07:00
|
|
|
|
|
|
|
abi <abi/3.0>,
|
|
|
|
|
2020-06-09 23:30:24 +02:00
|
|
|
include <tunables/global>
|
2012-01-10 19:06:24 +01:00
|
|
|
|
2018-10-15 20:57:33 +02:00
|
|
|
profile smbldap-useradd /usr/{bin,sbin}/smbldap-useradd {
|
2020-06-09 23:30:24 +02:00
|
|
|
include <abstractions/base>
|
|
|
|
include <abstractions/bash>
|
|
|
|
include <abstractions/nameservice>
|
|
|
|
include <abstractions/perl>
|
2012-01-10 19:06:24 +01:00
|
|
|
|
|
|
|
/dev/tty rw,
|
2015-10-20 23:12:35 +02:00
|
|
|
/{,usr/}bin/bash ix,
|
2012-01-10 19:06:24 +01:00
|
|
|
/etc/init.d/nscd Cx,
|
|
|
|
/etc/shadow r,
|
|
|
|
/etc/smbldap-tools/smbldap.conf r,
|
|
|
|
/etc/smbldap-tools/smbldap_bind.conf r,
|
2018-07-25 14:07:35 -07:00
|
|
|
/usr/{bin,sbin}/smbldap-useradd r,
|
|
|
|
/usr/{bin,sbin}/smbldap_tools.pm r,
|
2012-01-10 19:06:24 +01:00
|
|
|
/var/log/samba/log.smbd w,
|
|
|
|
|
|
|
|
# Site-specific additions and overrides. See local/README for details.
|
2020-04-28 22:25:27 +02:00
|
|
|
include if exists <local/usr.sbin.smbldap-useradd>
|
2012-01-10 19:06:24 +01:00
|
|
|
|
|
|
|
profile /etc/init.d/nscd {
|
2020-06-09 23:30:24 +02:00
|
|
|
include <abstractions/base>
|
|
|
|
include <abstractions/nameservice>
|
2012-01-10 19:06:24 +01:00
|
|
|
|
|
|
|
capability sys_ptrace,
|
|
|
|
|
2015-10-20 23:12:35 +02:00
|
|
|
/{,usr/}bin/bash r,
|
|
|
|
/{,usr/}bin/mountpoint rix,
|
|
|
|
/{,usr/}bin/systemctl rix,
|
2012-01-10 19:06:24 +01:00
|
|
|
/dev/tty rw,
|
|
|
|
/etc/init.d/nscd r,
|
|
|
|
/etc/rc.status r,
|
|
|
|
|
|
|
|
}
|
|
|
|
}
|