summaryrefslogtreecommitdiffstats
path: root/server/infopipe/org.freedesktop.sssd.infopipe.conf
diff options
context:
space:
mode:
authorStephen Gallagher <sgallagh@redhat.com>2009-03-18 09:42:22 -0400
committerStephen Gallagher <sgallagh@redhat.com>2009-03-19 11:06:31 -0400
commit907fd320aa244809ac4d8b831699b2c3d862ce11 (patch)
tree08f6adc54263e6d0a5b466041b2e45c02a9f8ab7 /server/infopipe/org.freedesktop.sssd.infopipe.conf
parent87323686e57db9a767ff5c2f0e1c56e9944d9f9a (diff)
downloadsssd-907fd320aa244809ac4d8b831699b2c3d862ce11.tar.gz
sssd-907fd320aa244809ac4d8b831699b2c3d862ce11.tar.xz
sssd-907fd320aa244809ac4d8b831699b2c3d862ce11.zip
Remove references to FreeIPA from D-BUS interfaces
Per discussion with the desktop team, using the org.freedesktop interface name will simplify adoption, as potential users won't feel like they're pulling in a FreeIPA dependency.
Diffstat (limited to 'server/infopipe/org.freedesktop.sssd.infopipe.conf')
-rw-r--r--server/infopipe/org.freedesktop.sssd.infopipe.conf24
1 files changed, 24 insertions, 0 deletions
diff --git a/server/infopipe/org.freedesktop.sssd.infopipe.conf b/server/infopipe/org.freedesktop.sssd.infopipe.conf
new file mode 100644
index 000000000..ab623208f
--- /dev/null
+++ b/server/infopipe/org.freedesktop.sssd.infopipe.conf
@@ -0,0 +1,24 @@
+<!DOCTYPE busconfig PUBLIC
+ "-//freedesktop//DTD D-BUS Bus Configuration 1.0//EN"
+ "http://www.freedesktop.org/standards/dbus/1.0/busconfig.dtd">
+<busconfig>
+
+ <!-- This configuration file specifies the required security policies
+ for the HAL to work. -->
+
+ <!-- Only root can own the SSSD service -->
+ <policy user="root">
+ <allow own="org.freedesktop.sssd.infopipe1"/>
+ <allow send_interface="org.freedesktop.sssd.infopipe1"/>
+ </policy>
+
+ <!-- Allow all methods on the interface -->
+ <!-- Right now, this will be handled by a limited ACL
+ within the InfoPipe Daemon. -->
+ <policy context="default">
+ <allow own="org.freedesktop.sssd.infopipe1.test"/>
+ <allow send_interface="org.freedesktop.sssd.infopipe1"/>
+ </policy>
+
+</busconfig>
+