unconfined_additional.te 1.3 KB

1234567891011121314151617181920212223242526272829303132333435363738394041
  1. policy_module(unconfined_additional, 0.0.4)
  2. require {
  3. type unconfined_t;
  4. type portage_sandbox_t;
  5. type sysadm_t;
  6. type atop_t;
  7. type atop_initrc_exec_t;
  8. type atop_unit_t;
  9. type spamd_t;
  10. type spamd_initrc_exec_t;
  11. type spamd_unit_t;
  12. type phpfpm_t;
  13. type phpfpm_initrc_exec_t;
  14. type phpfpm_unit_t;
  15. role unconfined_r;
  16. }
  17. allow unconfined_t portage_sandbox_t:process transition;
  18. allow unconfined_t self:process execmem;
  19. allow unconfined_t sysadm_t:process transition;
  20. sysadm_role_change(unconfined_r)
  21. sysadm_shell_domtrans(unconfined_t)
  22. init_startstop_service(unconfined_t, unconfined_r, atop_t, atop_initrc_exec_t, atop_unit_t)
  23. init_startstop_service(unconfined_t, unconfined_r, spamd_t, spamd_initrc_exec_t, spamd_unit_t)
  24. init_startstop_service(unconfined_t, unconfined_r, phpfpm_t, phpfpm_initrc_exec_t, phpfpm_unit_t)
  25. jabber_admin(unconfined_t, unconfined_r)
  26. amavis_admin(unconfined_t, unconfined_r)
  27. logging_admin_audit(unconfined_t, unconfined_r)
  28. dovecot_admin(unconfined_t, unconfined_r)
  29. openvpn_admin(unconfined_t, unconfined_r)
  30. logging_admin_syslog(unconfined_t, unconfined_r)
  31. mysql_admin(unconfined_t, unconfined_r)
  32. postfix_admin(unconfined_t, unconfined_r)
  33. ntp_admin(unconfined_t, unconfined_r)
  34. bind_admin(unconfined_t, unconfined_r)
  35. clamav_admin(unconfined_t, unconfined_r)
  36. apache_admin(unconfined_t, unconfined_r)