2005-08-02 17:21:46 +00:00
< html >
< head >
< title >
Security Enhanced Linux Reference Policy
< / title >
< style type = "text/css" media = "all" > @ import "style.css" ; < / style >
< / head >
< body >
< div id = "Header" > Security Enhanced Linux Reference Policy< / div >
< div id = 'Menu' >
< a href = "admin.html" > +
admin< / a > < /br/>
< div id = 'subitem' >
2005-08-26 15:28:46 +00:00
- < a href = 'admin_acct.html' >
acct< / a > < br / >
2005-12-07 15:46:38 +00:00
- < a href = 'admin_amanda.html' >
amanda< / a > < br / >
2005-10-19 21:12:22 +00:00
- < a href = 'admin_anaconda.html' >
anaconda< / a > < br / >
2005-08-02 17:21:46 +00:00
- < a href = 'admin_consoletype.html' >
consoletype< / a > < br / >
- < a href = 'admin_dmesg.html' >
dmesg< / a > < br / >
2005-10-19 21:12:22 +00:00
- < a href = 'admin_dmidecode.html' >
dmidecode< / a > < br / >
2005-08-26 15:28:46 +00:00
- < a href = 'admin_firstboot.html' >
firstboot< / a > < br / >
2005-10-19 21:12:22 +00:00
- < a href = 'admin_kudzu.html' >
kudzu< / a > < br / >
2005-08-02 17:21:46 +00:00
- < a href = 'admin_logrotate.html' >
logrotate< / a > < br / >
- < a href = 'admin_netutils.html' >
netutils< / a > < br / >
2005-08-26 15:28:46 +00:00
- < a href = 'admin_quota.html' >
quota< / a > < br / >
2005-08-02 17:21:46 +00:00
- < a href = 'admin_rpm.html' >
rpm< / a > < br / >
2005-08-26 15:28:46 +00:00
- < a href = 'admin_su.html' >
su< / a > < br / >
- < a href = 'admin_sudo.html' >
sudo< / a > < br / >
- < a href = 'admin_tmpreaper.html' >
tmpreaper< / a > < br / >
- < a href = 'admin_updfstab.html' >
updfstab< / a > < br / >
2005-08-02 17:21:46 +00:00
- < a href = 'admin_usermanage.html' >
usermanage< / a > < br / >
2005-09-22 18:40:05 +00:00
- < a href = 'admin_vpn.html' >
vpn< / a > < br / >
2005-08-02 17:21:46 +00:00
< / div >
< a href = "apps.html" > +
apps< / a > < /br/>
< div id = 'subitem' >
- < a href = 'apps_gpg.html' >
gpg< / a > < br / >
2005-08-26 15:28:46 +00:00
- < a href = 'apps_loadkeys.html' >
loadkeys< / a > < br / >
2005-10-19 21:12:22 +00:00
- < a href = 'apps_webalizer.html' >
webalizer< / a > < br / >
2005-08-02 17:21:46 +00:00
< / div >
< a href = "kernel.html" > +
kernel< / a > < /br/>
< div id = 'subitem' >
- < a href = 'kernel_bootloader.html' >
bootloader< / a > < br / >
2005-12-07 15:46:38 +00:00
- < a href = 'kernel_corecommands.html' >
corecommands< / a > < br / >
2005-08-02 17:21:46 +00:00
- < a href = 'kernel_corenetwork.html' >
corenetwork< / a > < br / >
- < a href = 'kernel_devices.html' >
devices< / a > < br / >
2005-12-07 15:46:38 +00:00
- < a href = 'kernel_domain.html' >
domain< / a > < br / >
- < a href = 'kernel_files.html' >
files< / a > < br / >
2005-08-02 17:21:46 +00:00
- < a href = 'kernel_filesystem.html' >
filesystem< / a > < br / >
- < a href = 'kernel_kernel.html' >
kernel< / a > < br / >
2005-10-19 21:12:22 +00:00
- < a href = 'kernel_mls.html' >
mls< / a > < br / >
2005-08-02 17:21:46 +00:00
- < a href = 'kernel_selinux.html' >
selinux< / a > < br / >
- < a href = 'kernel_storage.html' >
storage< / a > < br / >
- < a href = 'kernel_terminal.html' >
terminal< / a > < br / >
< / div >
< a href = "services.html" > +
services< / a > < /br/>
< div id = 'subitem' >
2005-10-19 21:12:22 +00:00
- < a href = 'services_apache.html' >
apache< / a > < br / >
- < a href = 'services_apm.html' >
apm< / a > < br / >
- < a href = 'services_arpwatch.html' >
arpwatch< / a > < br / >
2005-12-07 15:46:38 +00:00
- < a href = 'services_avahi.html' >
avahi< / a > < br / >
2005-08-26 15:28:46 +00:00
- < a href = 'services_bind.html' >
bind< / a > < br / >
2005-10-19 21:12:22 +00:00
- < a href = 'services_bluetooth.html' >
bluetooth< / a > < br / >
2005-12-07 15:46:38 +00:00
- < a href = 'services_canna.html' >
canna< / a > < br / >
2005-09-07 14:45:49 +00:00
- < a href = 'services_comsat.html' >
comsat< / a > < br / >
2005-09-22 18:40:05 +00:00
- < a href = 'services_cpucontrol.html' >
cpucontrol< / a > < br / >
2005-08-02 17:21:46 +00:00
- < a href = 'services_cron.html' >
cron< / a > < br / >
2005-12-07 15:46:38 +00:00
- < a href = 'services_cups.html' >
cups< / a > < br / >
2005-09-22 18:40:05 +00:00
- < a href = 'services_cvs.html' >
cvs< / a > < br / >
2005-12-07 15:46:38 +00:00
- < a href = 'services_cyrus.html' >
cyrus< / a > < br / >
- < a href = 'services_dbskk.html' >
dbskk< / a > < br / >
2005-09-07 14:45:49 +00:00
- < a href = 'services_dbus.html' >
dbus< / a > < br / >
- < a href = 'services_dhcp.html' >
dhcp< / a > < br / >
- < a href = 'services_dictd.html' >
dictd< / a > < br / >
2005-12-07 15:46:38 +00:00
- < a href = 'services_distcc.html' >
distcc< / a > < br / >
- < a href = 'services_dovecot.html' >
dovecot< / a > < br / >
2005-10-19 21:12:22 +00:00
- < a href = 'services_finger.html' >
finger< / a > < br / >
- < a href = 'services_ftp.html' >
ftp< / a > < br / >
2005-08-26 15:28:46 +00:00
- < a href = 'services_gpm.html' >
gpm< / a > < br / >
2005-09-07 14:45:49 +00:00
- < a href = 'services_hal.html' >
hal< / a > < br / >
2005-08-26 15:28:46 +00:00
- < a href = 'services_howl.html' >
howl< / a > < br / >
2005-12-07 15:46:38 +00:00
- < a href = 'services_i18n_input.html' >
i18n_input< / a > < br / >
2005-08-02 17:21:46 +00:00
- < a href = 'services_inetd.html' >
inetd< / a > < br / >
2005-09-07 14:45:49 +00:00
- < a href = 'services_inn.html' >
inn< / a > < br / >
2005-12-07 15:46:38 +00:00
- < a href = 'services_irqbalance.html' >
irqbalance< / a > < br / >
2005-08-02 17:21:46 +00:00
- < a href = 'services_kerberos.html' >
kerberos< / a > < br / >
2005-09-22 18:40:05 +00:00
- < a href = 'services_ktalk.html' >
ktalk< / a > < br / >
2005-08-26 15:28:46 +00:00
- < a href = 'services_ldap.html' >
ldap< / a > < br / >
2005-12-07 15:46:38 +00:00
- < a href = 'services_lpd.html' >
lpd< / a > < br / >
2005-10-19 21:12:22 +00:00
- < a href = 'services_mailman.html' >
mailman< / a > < br / >
2005-08-02 17:21:46 +00:00
- < a href = 'services_mta.html' >
mta< / a > < br / >
2005-08-26 15:28:46 +00:00
- < a href = 'services_mysql.html' >
mysql< / a > < br / >
2005-12-07 15:46:38 +00:00
- < a href = 'services_networkmanager.html' >
networkmanager< / a > < br / >
2005-08-02 17:21:46 +00:00
- < a href = 'services_nis.html' >
nis< / a > < br / >
- < a href = 'services_nscd.html' >
nscd< / a > < br / >
2005-09-07 14:45:49 +00:00
- < a href = 'services_ntp.html' >
ntp< / a > < br / >
2005-12-07 15:46:38 +00:00
- < a href = 'services_pegasus.html' >
pegasus< / a > < br / >
2005-09-22 18:40:05 +00:00
- < a href = 'services_portmap.html' >
portmap< / a > < br / >
2005-12-07 15:46:38 +00:00
- < a href = 'services_postfix.html' >
postfix< / a > < br / >
2005-09-22 18:40:05 +00:00
- < a href = 'services_postgresql.html' >
postgresql< / a > < br / >
2005-10-19 21:12:22 +00:00
- < a href = 'services_ppp.html' >
ppp< / a > < br / >
2005-08-26 15:28:46 +00:00
- < a href = 'services_privoxy.html' >
privoxy< / a > < br / >
2005-12-07 15:46:38 +00:00
- < a href = 'services_procmail.html' >
procmail< / a > < br / >
- < a href = 'services_radius.html' >
radius< / a > < br / >
2005-10-19 21:12:22 +00:00
- < a href = 'services_radvd.html' >
radvd< / a > < br / >
2005-12-07 15:46:38 +00:00
- < a href = 'services_rdisc.html' >
rdisc< / a > < br / >
2005-08-02 17:21:46 +00:00
- < a href = 'services_remotelogin.html' >
remotelogin< / a > < br / >
2005-09-22 18:40:05 +00:00
- < a href = 'services_rlogin.html' >
rlogin< / a > < br / >
2005-12-07 15:46:38 +00:00
- < a href = 'services_rpc.html' >
rpc< / a > < br / >
2005-08-26 15:28:46 +00:00
- < a href = 'services_rshd.html' >
rshd< / a > < br / >
- < a href = 'services_rsync.html' >
rsync< / a > < br / >
2005-09-22 18:40:05 +00:00
- < a href = 'services_samba.html' >
samba< / a > < br / >
2005-10-19 21:12:22 +00:00
- < a href = 'services_sasl.html' >
sasl< / a > < br / >
2005-08-02 17:21:46 +00:00
- < a href = 'services_sendmail.html' >
sendmail< / a > < br / >
2005-09-22 18:40:05 +00:00
- < a href = 'services_snmp.html' >
snmp< / a > < br / >
2005-12-07 15:46:38 +00:00
- < a href = 'services_spamassassin.html' >
spamassassin< / a > < br / >
2005-09-07 14:45:49 +00:00
- < a href = 'services_squid.html' >
squid< / a > < br / >
2005-08-02 17:21:46 +00:00
- < a href = 'services_ssh.html' >
ssh< / a > < br / >
2005-09-22 18:40:05 +00:00
- < a href = 'services_stunnel.html' >
stunnel< / a > < br / >
2005-08-26 15:28:46 +00:00
- < a href = 'services_tcpd.html' >
tcpd< / a > < br / >
2005-09-22 18:40:05 +00:00
- < a href = 'services_telnet.html' >
telnet< / a > < br / >
- < a href = 'services_tftp.html' >
tftp< / a > < br / >
2005-12-07 15:46:38 +00:00
- < a href = 'services_timidity.html' >
timidity< / a > < br / >
2005-09-22 18:40:05 +00:00
- < a href = 'services_uucp.html' >
uucp< / a > < br / >
2005-12-07 15:46:38 +00:00
- < a href = 'services_xdm.html' >
xdm< / a > < br / >
- < a href = 'services_xfs.html' >
xfs< / a > < br / >
2005-09-22 18:40:05 +00:00
- < a href = 'services_zebra.html' >
zebra< / a > < br / >
2005-08-02 17:21:46 +00:00
< / div >
< a href = "system.html" > +
system< / a > < /br/>
< div id = 'subitem' >
- < a href = 'system_authlogin.html' >
authlogin< / a > < br / >
- < a href = 'system_clock.html' >
clock< / a > < br / >
- < a href = 'system_fstools.html' >
fstools< / a > < br / >
- < a href = 'system_getty.html' >
getty< / a > < br / >
- < a href = 'system_hostname.html' >
hostname< / a > < br / >
- < a href = 'system_hotplug.html' >
hotplug< / a > < br / >
- < a href = 'system_init.html' >
init< / a > < br / >
- < a href = 'system_ipsec.html' >
ipsec< / a > < br / >
- < a href = 'system_iptables.html' >
iptables< / a > < br / >
- < a href = 'system_libraries.html' >
libraries< / a > < br / >
- < a href = 'system_locallogin.html' >
locallogin< / a > < br / >
- < a href = 'system_logging.html' >
logging< / a > < br / >
- < a href = 'system_lvm.html' >
lvm< / a > < br / >
- < a href = 'system_miscfiles.html' >
miscfiles< / a > < br / >
- < a href = 'system_modutils.html' >
modutils< / a > < br / >
- < a href = 'system_mount.html' >
mount< / a > < br / >
- < a href = 'system_pcmcia.html' >
pcmcia< / a > < br / >
- < a href = 'system_raid.html' >
raid< / a > < br / >
- < a href = 'system_selinuxutil.html' >
selinuxutil< / a > < br / >
- < a href = 'system_sysnetwork.html' >
sysnetwork< / a > < br / >
- < a href = 'system_udev.html' >
udev< / a > < br / >
- < a href = 'system_unconfined.html' >
unconfined< / a > < br / >
- < a href = 'system_userdomain.html' >
userdomain< / a > < br / >
< / div >
< br / > < p / >
< a href = "global_booleans.html" > * Global Booleans < / a >
< br / > < p / >
< a href = "global_tunables.html" > * Global Tunables < / a >
< p / > < br / > < p / >
< a href = "index.html" > * Layer Index< / a >
< br / > < p / >
< a href = "interfaces.html" > * Interface Index< / a >
< br / > < p / >
< a href = "templates.html" > * Template Index< / a >
< / div >
< div id = "Content" >
< h3 > Global booleans:< / h3 >
< div id = "interface" >
< div id = "codeblock" > secure_mode< / div >
< div id = "description" >
< h5 > Default value< / h5 >
< p > false< / p >
< h5 > Description< / h5 >
< p > < p >
2005-10-19 21:12:22 +00:00
Enabling secure mode disallows programs, such asnewrole, from transitioning to administrativeuser domains.< / p > < / p >
2005-08-02 17:21:46 +00:00
< / div > < / div >
2005-12-07 15:46:38 +00:00
< div id = "interface" >
< div id = "codeblock" > secure_mode_insmod< / div >
< div id = "description" >
< h5 > Default value< / h5 >
< p > false< / p >
< h5 > Description< / h5 >
< p > < p >
Disable transitions to insmod.< / p > < / p >
< / div > < / div >
< div id = "interface" >
< div id = "codeblock" > secure_mode_policyload< / div >
< div id = "description" >
< h5 > Default value< / h5 >
< p > false< / p >
< h5 > Description< / h5 >
< p > < p >
boolean to determine whether the system permits loading policy, settingenforcing mode, and changing boolean values. Set this to true and youhave to reboot to set it back< / p > < / p >
< / div > < / div >
2005-08-02 17:21:46 +00:00
< / div >
< / body >
< / html >