File: //usr/share/selinux/packages/auoms/auoms.pp
��|� �� ��|� SE Linux Module
auoms 1.4@ 1 1 $ netlink_audit_socket nlmsg_relay
append bind connect create write nlmsg_tty_audit relabelfrom ioctl name_bind nlmsg_readpriv nlmsg_write sendto recv_msg send_msg getattr setattr accept getopt read setopt shutdown recvfrom lock relabelto
listen
nlmsg_read
tcp_socket
append bind connect create write relabelfrom
acceptfrom connectto ioctl name_bind node_bind newconn sendto recv_msg send_msg getattr setattr accept getopt name_connect read setopt shutdown recvfrom lock relabelto
listen
msgq associate create write unix_read destroy getattr setattr read
enqueue
unix_write dir rmdir
append create execute write relabelfrom link unlink ioctl audit_access remove_name getattr setattr add_name reparent read
rename search lock relabelto mounton open quotaon swapon . peer recv blk_file
append create execute write relabelfrom link unlink ioctl audit_access getattr setattr read
rename lock relabelto mounton open quotaon swapon
chr_file
append create execute write relabelfrom link unlink ioctl audit_access
entrypoint getattr setattr execmod read
rename lock relabelto execute_no_trans mounton open quotaon swapon ipc associate create write unix_read destroy getattr setattr read
unix_write lnk_file
append create execute write relabelfrom link unlink ioctl audit_access getattr setattr read
rename lock relabelto mounton open quotaon swapon process getcap setcap sigstop sigchld share execheap
setcurrent setfscreate setkeycreate siginh
dyntransition
transition fork
getsession
noatsecure sigkill signull setrlimit getattr getsched setexec
setsched getpgid
setpgid ptrace execstack rlimitinh
setsockcreate signal execmem / capability2 mac_override mac_admin fd use * packet forward_out flow_out send recv
forward_in relabelto flow_in socket
append bind connect create write relabelfrom ioctl name_bind sendto recv_msg send_msg getattr setattr accept getopt read setopt shutdown recvfrom lock relabelto
listen
fifo_file
append create execute write relabelfrom link unlink ioctl audit_access getattr setattr read
rename lock relabelto mounton open quotaon swapon file
append create execute write relabelfrom link unlink ioctl audit_access
entrypoint getattr setattr execmod read
rename lock relabelto execute_no_trans mounton open quotaon swapon node
rawip_recv tcp_recv udp_recv
rawip_send tcp_send udp_send dccp_recv dccp_send enforce_dest sendto
recvfrom ! netlink_nflog_socket
append bind connect create write relabelfrom ioctl name_bind sendto recv_msg send_msg getattr setattr accept getopt read setopt shutdown recvfrom lock relabelto
listen + key create write view link setattr read search netlink_tcpdiag_socket
append bind connect create write relabelfrom ioctl name_bind nlmsg_write sendto recv_msg send_msg getattr setattr accept getopt read setopt shutdown recvfrom lock relabelto
listen
nlmsg_read unix_stream_socket
append bind connect create write relabelfrom
acceptfrom connectto ioctl name_bind newconn sendto recv_msg send_msg getattr setattr accept getopt read setopt shutdown recvfrom lock relabelto
listen 0 kernel_service create_files_as use_as_override netlink_route_socket
append bind connect create write relabelfrom ioctl name_bind nlmsg_write sendto recv_msg send_msg getattr setattr accept getopt read setopt shutdown recvfrom lock relabelto
listen
nlmsg_read
shm associate create write unix_read destroy getattr setattr read
lock
unix_write # netlink_selinux_socket
append bind connect create write relabelfrom ioctl name_bind sendto recv_msg send_msg getattr setattr accept getopt read setopt shutdown recvfrom lock relabelto
listen
capability setfcap setpcap fowner sys_boot sys_tty_config net_raw sys_admin
sys_chroot
sys_module sys_rawio dac_override ipc_owner kill dac_read_search sys_pacct
net_broadcast net_bind_service sys_nice sys_time fsetid mknod setgid setuid lease
net_admin audit_write
linux_immutable
sys_ptrace
audit_control ipc_lock sys_resource chown % netlink_ip6fw_socket
append bind connect create write relabelfrom ioctl name_bind nlmsg_write sendto recv_msg send_msg getattr setattr accept getopt read setopt shutdown recvfrom lock relabelto
listen
nlmsg_read , dccp_socket
append bind connect create write relabelfrom ioctl name_bind node_bind sendto recv_msg send_msg getattr setattr accept getopt name_connect read setopt shutdown recvfrom lock relabelto
listen netlink_firewall_socket
append bind connect create write relabelfrom ioctl name_bind nlmsg_write sendto recv_msg send_msg getattr setattr accept getopt read setopt shutdown recvfrom lock relabelto
listen
nlmsg_read sock_file
append create execute write relabelfrom link unlink ioctl audit_access getattr setattr read
rename lock relabelto mounton open quotaon swapon unix_dgram_socket
append bind connect create write relabelfrom ioctl name_bind sendto recv_msg send_msg getattr setattr accept getopt read setopt shutdown recvfrom lock relabelto
listen ( netlink_kobject_uevent_socket
append bind connect create write relabelfrom ioctl name_bind sendto recv_msg send_msg getattr setattr accept getopt read setopt shutdown recvfrom lock relabelto
listen
filesystem associate
quotaget relabelfrom
transition getattr quotamod mount remount unmount relabelto "