summaryrefslogtreecommitdiffstats
path: root/server/infopipe/org.freeipa.sssd.infopipe.conf
diff options
context:
space:
mode:
Diffstat (limited to 'server/infopipe/org.freeipa.sssd.infopipe.conf')
-rw-r--r--server/infopipe/org.freeipa.sssd.infopipe.conf11
1 files changed, 6 insertions, 5 deletions
diff --git a/server/infopipe/org.freeipa.sssd.infopipe.conf b/server/infopipe/org.freeipa.sssd.infopipe.conf
index e33eb30c7..b9ca55884 100644
--- a/server/infopipe/org.freeipa.sssd.infopipe.conf
+++ b/server/infopipe/org.freeipa.sssd.infopipe.conf
@@ -8,14 +8,15 @@
<!-- Only root can own the SSSD service -->
<policy user="root">
- <allow own="org.freeipa.sssd.infopipe"/>
+ <allow own="org.freeipa.sssd.infopipe1"/>
+ <allow send_interface="org.freeipa.sssd.infopipe1"/>
</policy>
- <!-- Allow anyone to invoke methods on the infopipe
- This is temporary. Real rules will be established
- later -->
+ <!-- Allow all methods on the interface -->
+ <!-- Right now, this will be handled by a limited ACL
+ within the InfoPipe Daemon. -->
<policy context="default">
- <allow send_interface="org.freeipa.sssd.infopipe"/>
+ <allow send_interface="org.freeipa.sssd.infopipe1"/>
</policy>
</busconfig>