1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39# # /var # /var/cache/ipa/sessions(/.*)? gen_context(system_u:object_r:httpd_sys_content_t,s0) # Make these files writable so the selfsign plugin can operate /etc/httpd/alias/cert8.db -- gen_context(system_u:object_r:cert_t,s0) /etc/httpd/alias/key3.db -- gen_context(system_u:object_r:cert_t,s0) /var/lib/ipa/ca_serialno -- gen_context(system_u:object_r:cert_t,s0)