summaryrefslogtreecommitdiffstats
path: root/src/responder/ifp/org.freedesktop.sssd.infopipe.conf
diff options
context:
space:
mode:
Diffstat (limited to 'src/responder/ifp/org.freedesktop.sssd.infopipe.conf')
-rw-r--r--src/responder/ifp/org.freedesktop.sssd.infopipe.conf22
1 files changed, 22 insertions, 0 deletions
diff --git a/src/responder/ifp/org.freedesktop.sssd.infopipe.conf b/src/responder/ifp/org.freedesktop.sssd.infopipe.conf
new file mode 100644
index 000000000..fea847cee
--- /dev/null
+++ b/src/responder/ifp/org.freedesktop.sssd.infopipe.conf
@@ -0,0 +1,22 @@
+<?xml version="1.0"?> <!--*-nxml-*-->
+<!DOCTYPE busconfig PUBLIC
+ "-//freedesktop//DTD D-BUS Bus Configuration 1.0//EN"
+ "http://www.freedesktop.org/standards/dbus/1.0/busconfig.dtd">
+<busconfig>
+
+ <!-- This configuration file specifies the required security policies
+ for the SSSD InfoPipe to work. -->
+
+ <!-- Only root can own (provide) the SSSD service -->
+ <policy user="root">
+ <allow own="org.freedesktop.sssd.infopipe"/>
+ </policy>
+
+ <!-- Allow all methods on the interface -->
+ <!-- Right now, this will be handled by a limited ACL
+ within the InfoPipe Daemon. -->
+ <policy context="default">
+ <allow send_interface="org.freedesktop.sssd.infopipe"/>
+ </policy>
+
+</busconfig>