blob: 1971e4c6648823cca770408726783373019d0e5b [file] [log] [blame]
Joshua Brindle13cd4c82008-08-19 15:30:36 -04001module my_module 1.0;
2
3require {
4 bool secure_mode;
5 type system_t, sysadm_t, file_t;
6 attribute domain;
7 role system_r;
8 class file {read write};
9
10}
11
12type new_t, domain;
13role system_r types new_t;
14
15allow system_t file_t : file { read write };
16
17if (secure_mode)
18{
19 allow sysadm_t file_t : file { read write };
20}