Remove auditd and policy tool in guest
[AGL/meta-agl-devel.git] / meta-agl-ic-container / dynamic-layers / meta-selinux / recipes-security / packagegroups / packagegroup-agl-core-selinux-guest.bb
diff --git a/meta-agl-ic-container/dynamic-layers/meta-selinux/recipes-security/packagegroups/packagegroup-agl-core-selinux-guest.bb b/meta-agl-ic-container/dynamic-layers/meta-selinux/recipes-security/packagegroups/packagegroup-agl-core-selinux-guest.bb
new file mode 100644 (file)
index 0000000..d58d901
--- /dev/null
@@ -0,0 +1,24 @@
+SUMMARY = "SELinux packages for container guest"
+DESCRIPTION = "SELinux packages required for AGL"
+LICENSE = "MIT"
+
+inherit packagegroup features_check
+
+REQUIRED_DISTRO_FEATURES = "selinux"
+
+PACKAGES = " \
+    packagegroup-agl-core-selinux-guest \
+"
+
+# The packagegroup-agl-core-selinux is including auditd.
+# But it shall run in host, shall not run in guest.
+# This package group remove from host only package from packagegroup-agl-core-selinux
+
+RDEPENDS:${PN} = " \
+    coreutils \
+    libsepol \
+    libselinux \
+    libselinux-bin \
+    libsemanage \
+    refpolicy \
+"