2006-01-24 15:41:46 +00:00
|
|
|
#
|
|
|
|
# This file contains a listing of available modules.
|
|
|
|
# To prevent a module from being used in policy
|
|
|
|
# creation, set the module name to "off".
|
|
|
|
#
|
|
|
|
# For monolithic policies, modules set to "base" and "module"
|
|
|
|
# will be built into the policy.
|
|
|
|
#
|
|
|
|
# For modular policies, modules set to "base" will be
|
|
|
|
# included in the base module. "module" will be compiled
|
|
|
|
# as individual loadable modules.
|
|
|
|
#
|
|
|
|
|
|
|
|
# Layer: kernel
|
|
|
|
# Module: terminal
|
|
|
|
# Required in base
|
|
|
|
#
|
|
|
|
# Policy for terminals.
|
|
|
|
#
|
|
|
|
terminal = base
|
|
|
|
|
2006-03-29 20:21:25 +00:00
|
|
|
# Layer: kernel
|
|
|
|
# Module: mcs
|
|
|
|
# Required in base
|
|
|
|
#
|
|
|
|
# Multicategory security policy
|
|
|
|
#
|
|
|
|
mcs = base
|
|
|
|
|
2006-01-24 15:41:46 +00:00
|
|
|
# Layer: kernel
|
|
|
|
# Module: files
|
|
|
|
# Required in base
|
|
|
|
#
|
|
|
|
# Basic filesystem types and interfaces.
|
|
|
|
#
|
|
|
|
files = base
|
|
|
|
|
|
|
|
# Layer: kernel
|
|
|
|
# Module: kernel
|
|
|
|
# Required in base
|
|
|
|
#
|
|
|
|
# Policy for kernel threads, proc filesystem,
|
|
|
|
# and unlabeled processes and objects.
|
|
|
|
#
|
|
|
|
kernel = base
|
|
|
|
|
|
|
|
# Layer: kernel
|
|
|
|
# Module: filesystem
|
|
|
|
# Required in base
|
|
|
|
#
|
|
|
|
# Policy for filesystems.
|
|
|
|
#
|
|
|
|
filesystem = base
|
|
|
|
|
|
|
|
# Layer: kernel
|
|
|
|
# Module: devices
|
|
|
|
# Required in base
|
|
|
|
#
|
|
|
|
# Device nodes and interfaces for many basic system devices.
|
|
|
|
#
|
|
|
|
devices = base
|
|
|
|
|
|
|
|
# Layer: kernel
|
|
|
|
# Module: domain
|
|
|
|
# Required in base
|
|
|
|
#
|
|
|
|
# Core policy for domains.
|
|
|
|
#
|
|
|
|
domain = base
|
|
|
|
|
|
|
|
# Layer: kernel
|
|
|
|
# Module: corecommands
|
|
|
|
# Required in base
|
|
|
|
#
|
|
|
|
# Core policy for shells, and generic programs
|
|
|
|
# in /bin, /sbin, /usr/bin, and /usr/sbin.
|
|
|
|
#
|
|
|
|
corecommands = base
|
|
|
|
|
|
|
|
# Layer: kernel
|
|
|
|
# Module: corenetwork
|
|
|
|
# Required in base
|
|
|
|
#
|
|
|
|
# Policy controlling access to network objects
|
|
|
|
#
|
|
|
|
corenetwork = base
|
|
|
|
|
|
|
|
# Layer: kernel
|
|
|
|
# Module: mls
|
|
|
|
# Required in base
|
|
|
|
#
|
2006-02-19 12:17:15 +00:00
|
|
|
# Multilevel security policy
|
|
|
|
#
|
2006-03-29 20:21:25 +00:00
|
|
|
mls = base
|
2006-02-19 12:17:15 +00:00
|
|
|
|
2006-01-24 15:41:46 +00:00
|
|
|
# Layer: kernel
|
|
|
|
# Module: selinux
|
|
|
|
# Required in base
|
|
|
|
#
|
|
|
|
# Policy for kernel security interface, in particular, selinuxfs.
|
|
|
|
#
|
|
|
|
selinux = base
|
|
|
|
|
|
|
|
# Layer: admin
|
|
|
|
# Module: prelink
|
|
|
|
#
|
|
|
|
# Prelink ELF shared library mappings.
|
|
|
|
#
|
|
|
|
prelink = module
|
|
|
|
|
|
|
|
# Layer: admin
|
|
|
|
# Module: acct
|
|
|
|
#
|
|
|
|
# Berkeley process accounting
|
|
|
|
#
|
|
|
|
acct = module
|
|
|
|
|
|
|
|
# Layer: admin
|
|
|
|
# Module: usermanage
|
|
|
|
#
|
|
|
|
# Policy for managing user accounts.
|
|
|
|
#
|
|
|
|
usermanage = module
|
|
|
|
|
|
|
|
# Layer: admin
|
|
|
|
# Module: rpm
|
|
|
|
#
|
|
|
|
# Policy for the RPM package manager.
|
|
|
|
#
|
|
|
|
rpm = module
|
|
|
|
|
|
|
|
# Layer: admin
|
|
|
|
# Module: readahead
|
|
|
|
#
|
|
|
|
# Readahead, read files into page cache for improved performance
|
|
|
|
#
|
|
|
|
readahead = module
|
|
|
|
|
|
|
|
# Layer: admin
|
|
|
|
# Module: kudzu
|
|
|
|
#
|
|
|
|
# Hardware detection and configuration tools
|
|
|
|
#
|
|
|
|
kudzu = module
|
|
|
|
|
2006-03-29 20:21:25 +00:00
|
|
|
# Layer: admin
|
|
|
|
# Module: bootloader
|
|
|
|
#
|
|
|
|
# Policy for the kernel modules, kernel image, and bootloader.
|
|
|
|
#
|
|
|
|
bootloader = base
|
|
|
|
|
2006-01-24 15:41:46 +00:00
|
|
|
# Layer: admin
|
|
|
|
# Module: updfstab
|
|
|
|
#
|
|
|
|
# Red Hat utility to change /etc/fstab.
|
|
|
|
#
|
|
|
|
updfstab = module
|
|
|
|
|
|
|
|
# Layer: admin
|
|
|
|
# Module: netutils
|
|
|
|
#
|
|
|
|
# Network analysis utilities
|
|
|
|
#
|
2006-03-29 20:21:25 +00:00
|
|
|
netutils = base
|
2006-01-24 15:41:46 +00:00
|
|
|
|
|
|
|
# Layer: admin
|
|
|
|
# Module: alsa
|
|
|
|
#
|
|
|
|
# Ainit ALSA configuration tool
|
|
|
|
#
|
|
|
|
alsa = module
|
|
|
|
|
|
|
|
# Layer: admin
|
|
|
|
# Module: vpn
|
|
|
|
#
|
|
|
|
# Virtual Private Networking client
|
|
|
|
#
|
|
|
|
vpn = module
|
|
|
|
|
|
|
|
# Layer: admin
|
|
|
|
# Module: portage
|
|
|
|
#
|
|
|
|
# Portage Package Management System. The primary package management and
|
|
|
|
# distribution system for Gentoo.
|
|
|
|
#
|
|
|
|
portage = module
|
|
|
|
|
|
|
|
# Layer: admin
|
|
|
|
# Module: su
|
|
|
|
#
|
|
|
|
# Run shells with substitute user and group
|
|
|
|
#
|
|
|
|
su = module
|
|
|
|
|
2006-03-29 20:21:25 +00:00
|
|
|
# Layer: admin
|
|
|
|
# Module: apt
|
|
|
|
#
|
|
|
|
# APT advanced package toll.
|
|
|
|
#
|
2006-07-19 18:39:31 +00:00
|
|
|
apt = off
|
2006-03-29 20:21:25 +00:00
|
|
|
|
2006-01-24 15:41:46 +00:00
|
|
|
# Layer: admin
|
|
|
|
# Module: dmesg
|
|
|
|
#
|
|
|
|
# Policy for dmesg.
|
|
|
|
#
|
|
|
|
dmesg = module
|
|
|
|
|
|
|
|
# Layer: admin
|
|
|
|
# Module: anaconda
|
|
|
|
#
|
|
|
|
# Policy for the Anaconda installer.
|
|
|
|
#
|
|
|
|
anaconda = module
|
|
|
|
|
2006-03-29 20:21:25 +00:00
|
|
|
# Layer: admin
|
|
|
|
# Module: dpkg
|
|
|
|
#
|
|
|
|
# Policy for the Debian package manager.
|
|
|
|
#
|
|
|
|
dpkg = off
|
|
|
|
|
2006-01-24 15:41:46 +00:00
|
|
|
# Layer: admin
|
|
|
|
# Module: amanda
|
|
|
|
#
|
|
|
|
# Automated backup program.
|
|
|
|
#
|
|
|
|
amanda = module
|
|
|
|
|
|
|
|
# Layer: admin
|
|
|
|
# Module: logrotate
|
|
|
|
#
|
|
|
|
# Rotate and archive system logs
|
|
|
|
#
|
|
|
|
logrotate = module
|
|
|
|
|
|
|
|
# Layer: admin
|
|
|
|
# Module: ddcprobe
|
|
|
|
#
|
|
|
|
# ddcprobe retrieves monitor and graphics card information
|
|
|
|
#
|
|
|
|
ddcprobe = module
|
|
|
|
|
|
|
|
# Layer: admin
|
|
|
|
# Module: quota
|
|
|
|
#
|
|
|
|
# File system quota management
|
|
|
|
#
|
|
|
|
quota = module
|
|
|
|
|
|
|
|
# Layer: admin
|
|
|
|
# Module: consoletype
|
|
|
|
#
|
|
|
|
# Determine of the console connected to the controlling terminal.
|
|
|
|
#
|
|
|
|
consoletype = module
|
|
|
|
|
|
|
|
# Layer: admin
|
|
|
|
# Module: sudo
|
|
|
|
#
|
|
|
|
# Execute a command with a substitute user
|
|
|
|
#
|
|
|
|
sudo = module
|
|
|
|
|
|
|
|
# Layer: admin
|
|
|
|
# Module: vbetool
|
|
|
|
#
|
|
|
|
# run real-mode video BIOS code to alter hardware state
|
|
|
|
#
|
|
|
|
vbetool = module
|
|
|
|
|
|
|
|
# Layer: admin
|
|
|
|
# Module: usbmodules
|
|
|
|
#
|
|
|
|
# List kernel modules of USB devices
|
|
|
|
#
|
|
|
|
usbmodules = module
|
|
|
|
|
|
|
|
# Layer: admin
|
|
|
|
# Module: firstboot
|
|
|
|
#
|
|
|
|
# Final system configuration run during the first boot
|
|
|
|
# after installation of Red Hat/Fedora systems.
|
|
|
|
#
|
|
|
|
firstboot = module
|
|
|
|
|
|
|
|
# Layer: admin
|
|
|
|
# Module: certwatch
|
|
|
|
#
|
|
|
|
# Digital Certificate Tracking
|
|
|
|
#
|
|
|
|
certwatch = module
|
|
|
|
|
|
|
|
# Layer: admin
|
|
|
|
# Module: tmpreaper
|
|
|
|
#
|
|
|
|
# Manage temporary directory sizes and file ages
|
|
|
|
#
|
|
|
|
tmpreaper = module
|
|
|
|
|
2006-03-29 20:21:25 +00:00
|
|
|
# Layer: admin
|
|
|
|
# Module: mrtg
|
|
|
|
#
|
|
|
|
# Network traffic graphing
|
|
|
|
#
|
|
|
|
mrtg = module
|
|
|
|
|
2006-01-24 15:41:46 +00:00
|
|
|
# Layer: admin
|
|
|
|
# Module: dmidecode
|
|
|
|
#
|
|
|
|
# Decode DMI data for x86/ia64 bioses.
|
|
|
|
#
|
|
|
|
dmidecode = module
|
|
|
|
|
|
|
|
# Layer: admin
|
|
|
|
# Module: logwatch
|
|
|
|
#
|
|
|
|
# System log analyzer and reporter
|
|
|
|
#
|
|
|
|
logwatch = module
|
|
|
|
|
2006-03-29 20:21:25 +00:00
|
|
|
# Layer: kernel
|
|
|
|
# Module: storage
|
|
|
|
#
|
|
|
|
# Policy controlling access to storage devices
|
|
|
|
#
|
|
|
|
storage = base
|
|
|
|
|
|
|
|
# Layer: apps
|
|
|
|
# Module: evolution
|
|
|
|
#
|
|
|
|
# Evolution email client
|
|
|
|
#
|
|
|
|
evolution = module
|
|
|
|
|
|
|
|
# Layer: apps
|
|
|
|
# Module: mozilla
|
|
|
|
#
|
|
|
|
# Policy for Mozilla and related web browsers
|
|
|
|
#
|
|
|
|
mozilla = module
|
|
|
|
|
2006-01-24 15:41:46 +00:00
|
|
|
# Layer: apps
|
|
|
|
# Module: irc
|
|
|
|
#
|
|
|
|
# IRC client policy
|
|
|
|
#
|
|
|
|
irc = module
|
|
|
|
|
|
|
|
# Layer: apps
|
|
|
|
# Module: lockdev
|
|
|
|
#
|
|
|
|
# device locking policy for lockdev
|
|
|
|
#
|
|
|
|
lockdev = module
|
|
|
|
|
|
|
|
# Layer: apps
|
|
|
|
# Module: usernetctl
|
|
|
|
#
|
|
|
|
# User network interface configuration helper
|
|
|
|
#
|
|
|
|
usernetctl = module
|
|
|
|
|
|
|
|
# Layer: apps
|
|
|
|
# Module: gpg
|
|
|
|
#
|
|
|
|
# Policy for GNU Privacy Guard and related programs.
|
|
|
|
#
|
|
|
|
gpg = module
|
|
|
|
|
2006-03-29 20:21:25 +00:00
|
|
|
# Layer: apps
|
|
|
|
# Module: thunderbird
|
|
|
|
#
|
|
|
|
# Thunderbird email client
|
|
|
|
#
|
|
|
|
thunderbird = module
|
|
|
|
|
2006-01-24 15:41:46 +00:00
|
|
|
# Layer: apps
|
|
|
|
# Module: wine
|
|
|
|
#
|
|
|
|
# Wine Is Not an Emulator. Run Windows programs in Linux.
|
|
|
|
#
|
|
|
|
wine = module
|
|
|
|
|
|
|
|
# Layer: apps
|
|
|
|
# Module: loadkeys
|
|
|
|
#
|
|
|
|
# Load keyboard mappings.
|
|
|
|
#
|
|
|
|
loadkeys = module
|
|
|
|
|
|
|
|
# Layer: apps
|
|
|
|
# Module: screen
|
|
|
|
#
|
|
|
|
# GNU terminal multiplexer
|
|
|
|
#
|
|
|
|
screen = module
|
|
|
|
|
2006-03-29 20:21:25 +00:00
|
|
|
# Layer: apps
|
|
|
|
# Module: calamaris
|
|
|
|
#
|
|
|
|
# Squid log analysis
|
|
|
|
#
|
|
|
|
calamaris = module
|
|
|
|
|
|
|
|
# Layer: apps
|
|
|
|
# Module: tvtime
|
|
|
|
#
|
|
|
|
# tvtime - a high quality television application
|
|
|
|
#
|
|
|
|
tvtime = module
|
|
|
|
|
2006-01-24 15:41:46 +00:00
|
|
|
# Layer: apps
|
|
|
|
# Module: java
|
|
|
|
#
|
|
|
|
# Java virtual machine
|
|
|
|
#
|
|
|
|
java = module
|
|
|
|
|
2006-03-29 20:21:25 +00:00
|
|
|
# Layer: apps
|
|
|
|
# Module: uml
|
|
|
|
#
|
|
|
|
# Policy for UML
|
|
|
|
#
|
|
|
|
uml = module
|
|
|
|
|
2006-01-24 15:41:46 +00:00
|
|
|
# Layer: apps
|
|
|
|
# Module: cdrecord
|
|
|
|
#
|
|
|
|
# Policy for cdrecord
|
|
|
|
#
|
|
|
|
cdrecord = module
|
|
|
|
|
2006-03-29 20:21:25 +00:00
|
|
|
# Layer: apps
|
|
|
|
# Module: mplayer
|
|
|
|
#
|
|
|
|
# Mplayer media player and encoder
|
|
|
|
#
|
|
|
|
mplayer = module
|
|
|
|
|
2006-01-24 15:41:46 +00:00
|
|
|
# Layer: apps
|
|
|
|
# Module: webalizer
|
|
|
|
#
|
|
|
|
# Web server log analysis
|
|
|
|
#
|
|
|
|
webalizer = module
|
|
|
|
|
2006-03-29 20:21:25 +00:00
|
|
|
# Layer: apps
|
|
|
|
# Module: ethereal
|
|
|
|
#
|
|
|
|
# Ethereal packet capture tool.
|
|
|
|
#
|
|
|
|
ethereal = module
|
|
|
|
|
2006-01-24 15:41:46 +00:00
|
|
|
# Layer: apps
|
|
|
|
# Module: userhelper
|
|
|
|
#
|
|
|
|
# SELinux utility to run a shell with a new role
|
|
|
|
#
|
|
|
|
userhelper = module
|
|
|
|
|
2006-03-29 20:21:25 +00:00
|
|
|
# Layer: apps
|
|
|
|
# Module: games
|
|
|
|
#
|
|
|
|
# Games
|
|
|
|
#
|
|
|
|
games = module
|
|
|
|
|
2006-01-24 15:41:46 +00:00
|
|
|
# Layer: apps
|
|
|
|
# Module: mono
|
|
|
|
#
|
|
|
|
# Run .NET server and client applications on Linux.
|
|
|
|
#
|
|
|
|
mono = module
|
|
|
|
|
|
|
|
# Layer: apps
|
|
|
|
# Module: slocate
|
|
|
|
#
|
|
|
|
# Update database for mlocate
|
|
|
|
#
|
|
|
|
slocate = module
|
|
|
|
|
2007-02-28 21:23:19 +00:00
|
|
|
# Layer: system
|
|
|
|
# Module: application
|
|
|
|
# Required in base
|
|
|
|
#
|
|
|
|
# Defines attributs and interfaces for all user applications
|
|
|
|
#
|
|
|
|
application = base
|
|
|
|
|
2006-03-29 20:21:25 +00:00
|
|
|
# Layer: system
|
|
|
|
# Module: xen
|
2006-01-24 15:41:46 +00:00
|
|
|
#
|
2006-03-29 20:21:25 +00:00
|
|
|
# Xen hypervisor
|
2006-01-24 15:41:46 +00:00
|
|
|
#
|
2006-03-29 20:21:25 +00:00
|
|
|
xen = module
|
2006-01-24 15:41:46 +00:00
|
|
|
|
2006-03-29 20:21:25 +00:00
|
|
|
# Layer: system
|
|
|
|
# Module: fstools
|
2006-01-24 15:41:46 +00:00
|
|
|
#
|
2006-03-29 20:21:25 +00:00
|
|
|
# Tools for filesystem management, such as mkfs and fsck.
|
|
|
|
#
|
|
|
|
fstools = base
|
|
|
|
|
|
|
|
# Layer: system
|
|
|
|
# Module: logging
|
|
|
|
#
|
|
|
|
# Policy for the kernel message logger and system logging daemon.
|
|
|
|
#
|
|
|
|
logging = base
|
|
|
|
|
|
|
|
# Layer: system
|
|
|
|
# Module: hostname
|
|
|
|
#
|
|
|
|
# Policy for changing the system host name.
|
|
|
|
#
|
|
|
|
hostname = module
|
|
|
|
|
|
|
|
# Layer: system
|
|
|
|
# Module: daemontools
|
|
|
|
#
|
|
|
|
# Collection of tools for managing UNIX services
|
|
|
|
#
|
|
|
|
daemontools = module
|
|
|
|
|
|
|
|
# Layer: system
|
|
|
|
# Module: getty
|
|
|
|
#
|
|
|
|
# Policy for getty.
|
|
|
|
#
|
|
|
|
getty = module
|
|
|
|
|
|
|
|
# Layer: system
|
|
|
|
# Module: lvm
|
|
|
|
#
|
|
|
|
# Policy for logical volume management programs.
|
|
|
|
#
|
|
|
|
lvm = base
|
|
|
|
|
|
|
|
# Layer: system
|
|
|
|
# Module: sysnetwork
|
|
|
|
#
|
|
|
|
# Policy for network configuration: ifconfig and dhcp client.
|
|
|
|
#
|
|
|
|
sysnetwork = base
|
|
|
|
|
|
|
|
# Layer: system
|
|
|
|
# Module: init
|
|
|
|
#
|
|
|
|
# System initialization programs (init and init scripts).
|
|
|
|
#
|
|
|
|
init = base
|
|
|
|
|
|
|
|
# Layer: system
|
|
|
|
# Module: selinuxutil
|
|
|
|
#
|
|
|
|
# Policy for SELinux policy and userland applications.
|
|
|
|
#
|
|
|
|
selinuxutil = base
|
|
|
|
|
|
|
|
# Layer: system
|
|
|
|
# Module: udev
|
|
|
|
#
|
|
|
|
# Policy for udev.
|
|
|
|
#
|
|
|
|
udev = base
|
|
|
|
|
|
|
|
# Layer: system
|
|
|
|
# Module: pcmcia
|
|
|
|
#
|
|
|
|
# PCMCIA card management services
|
|
|
|
#
|
|
|
|
pcmcia = module
|
|
|
|
|
|
|
|
# Layer: system
|
|
|
|
# Module: authlogin
|
|
|
|
#
|
|
|
|
# Common policy for authentication and user login.
|
|
|
|
#
|
|
|
|
authlogin = base
|
|
|
|
|
|
|
|
# Layer: system
|
|
|
|
# Module: libraries
|
|
|
|
#
|
|
|
|
# Policy for system libraries.
|
|
|
|
#
|
|
|
|
libraries = base
|
|
|
|
|
|
|
|
# Layer: system
|
|
|
|
# Module: raid
|
|
|
|
#
|
|
|
|
# RAID array management tools
|
|
|
|
#
|
|
|
|
raid = module
|
|
|
|
|
|
|
|
# Layer: system
|
|
|
|
# Module: userdomain
|
|
|
|
#
|
|
|
|
# Policy for user domains
|
|
|
|
#
|
|
|
|
userdomain = base
|
|
|
|
|
|
|
|
# Layer: system
|
|
|
|
# Module: modutils
|
|
|
|
#
|
|
|
|
# Policy for kernel module utilities
|
|
|
|
#
|
|
|
|
modutils = base
|
|
|
|
|
|
|
|
# Layer: system
|
|
|
|
# Module: hotplug
|
|
|
|
#
|
|
|
|
# Policy for hotplug system, for supporting the
|
|
|
|
# connection and disconnection of devices at runtime.
|
|
|
|
#
|
|
|
|
hotplug = base
|
|
|
|
|
|
|
|
# Layer: system
|
|
|
|
# Module: clock
|
|
|
|
#
|
|
|
|
# Policy for reading and setting the hardware clock.
|
|
|
|
#
|
|
|
|
clock = base
|
|
|
|
|
|
|
|
# Layer: system
|
|
|
|
# Module: locallogin
|
|
|
|
#
|
|
|
|
# Policy for local logins.
|
|
|
|
#
|
|
|
|
locallogin = base
|
|
|
|
|
|
|
|
# Layer: system
|
|
|
|
# Module: iptables
|
|
|
|
#
|
|
|
|
# Policy for iptables.
|
|
|
|
#
|
|
|
|
iptables = module
|
|
|
|
|
|
|
|
# Layer: system
|
|
|
|
# Module: mount
|
|
|
|
#
|
|
|
|
# Policy for mount.
|
2006-01-24 15:41:46 +00:00
|
|
|
#
|
2006-03-29 20:21:25 +00:00
|
|
|
mount = base
|
|
|
|
|
|
|
|
# Layer: system
|
|
|
|
# Module: unconfined
|
|
|
|
#
|
|
|
|
# The unconfined domain.
|
|
|
|
#
|
|
|
|
unconfined = module
|
|
|
|
|
|
|
|
# Layer: system
|
|
|
|
# Module: miscfiles
|
|
|
|
#
|
|
|
|
# Miscelaneous files.
|
|
|
|
#
|
|
|
|
miscfiles = base
|
|
|
|
|
|
|
|
# Layer: system
|
|
|
|
# Module: ipsec
|
|
|
|
#
|
|
|
|
# TCP/IP encryption
|
|
|
|
#
|
|
|
|
ipsec = module
|
2006-01-24 15:41:46 +00:00
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: nis
|
|
|
|
#
|
|
|
|
# Policy for NIS (YP) servers and clients
|
|
|
|
#
|
|
|
|
nis = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: distcc
|
|
|
|
#
|
|
|
|
# Distributed compiler daemon
|
|
|
|
#
|
|
|
|
distcc = module
|
|
|
|
|
2006-03-29 20:21:25 +00:00
|
|
|
# Layer: services
|
|
|
|
# Module: tor
|
|
|
|
#
|
|
|
|
# TOR, the onion router
|
|
|
|
#
|
|
|
|
tor = module
|
|
|
|
|
2006-01-24 15:41:46 +00:00
|
|
|
# Layer: services
|
|
|
|
# Module: rshd
|
|
|
|
#
|
|
|
|
# Remote shell service.
|
|
|
|
#
|
|
|
|
rshd = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: cpucontrol
|
|
|
|
#
|
|
|
|
# Services for loading CPU microcode and CPU frequency scaling.
|
|
|
|
#
|
|
|
|
cpucontrol = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: bind
|
|
|
|
#
|
|
|
|
# Berkeley internet name domain DNS server.
|
|
|
|
#
|
|
|
|
bind = module
|
|
|
|
|
2006-03-29 20:21:25 +00:00
|
|
|
# Layer: services
|
|
|
|
# Module: cipe
|
|
|
|
#
|
|
|
|
# Encrypted tunnel daemon
|
|
|
|
#
|
|
|
|
cipe = module
|
|
|
|
|
2006-01-24 15:41:46 +00:00
|
|
|
# Layer: services
|
|
|
|
# Module: canna
|
|
|
|
#
|
|
|
|
# Canna - kana-kanji conversion server
|
|
|
|
#
|
|
|
|
canna = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: i18n_input
|
|
|
|
#
|
|
|
|
# IIIMF htt server
|
|
|
|
#
|
|
|
|
i18n_input = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: uucp
|
|
|
|
#
|
|
|
|
# Unix to Unix Copy
|
|
|
|
#
|
|
|
|
uucp = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: sasl
|
|
|
|
#
|
|
|
|
# SASL authentication server
|
|
|
|
#
|
|
|
|
sasl = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: pegasus
|
|
|
|
#
|
|
|
|
# The Open Group Pegasus CIM/WBEM Server.
|
|
|
|
#
|
|
|
|
pegasus = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: cron
|
|
|
|
#
|
|
|
|
# Periodic execution of scheduled commands.
|
|
|
|
#
|
|
|
|
cron = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: sendmail
|
|
|
|
#
|
|
|
|
# Policy for sendmail.
|
|
|
|
#
|
|
|
|
sendmail = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: samba
|
|
|
|
#
|
|
|
|
# SMB and CIFS client/server programs for UNIX and
|
|
|
|
# name Service Switch daemon for resolving names
|
|
|
|
# from Windows NT servers.
|
|
|
|
#
|
|
|
|
samba = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: dbus
|
|
|
|
#
|
|
|
|
# Desktop messaging bus
|
|
|
|
#
|
|
|
|
dbus = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: howl
|
|
|
|
#
|
|
|
|
# Port of Apple Rendezvous multicast DNS
|
|
|
|
#
|
|
|
|
howl = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: timidity
|
|
|
|
#
|
|
|
|
# MIDI to WAV converter and player configured as a service
|
|
|
|
#
|
|
|
|
timidity = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: postgresql
|
|
|
|
#
|
|
|
|
# PostgreSQL relational database
|
|
|
|
#
|
|
|
|
postgresql = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: openct
|
|
|
|
#
|
|
|
|
# Service for handling smart card readers.
|
|
|
|
#
|
|
|
|
openct = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: snmp
|
|
|
|
#
|
|
|
|
# Simple network management protocol services
|
|
|
|
#
|
|
|
|
snmp = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: ucspitcp
|
|
|
|
#
|
|
|
|
# ucspitcp policy
|
|
|
|
#
|
|
|
|
ucspitcp = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: publicfile
|
|
|
|
#
|
|
|
|
# publicfile supplies files to the public through HTTP and FTP
|
|
|
|
#
|
|
|
|
publicfile = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: roundup
|
|
|
|
#
|
|
|
|
# Roundup Issue Tracking System policy
|
|
|
|
#
|
|
|
|
roundup = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: remotelogin
|
|
|
|
#
|
|
|
|
# Policy for rshd, rlogind, and telnetd.
|
|
|
|
#
|
|
|
|
remotelogin = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: telnet
|
|
|
|
#
|
|
|
|
# Telnet daemon
|
|
|
|
#
|
|
|
|
telnet = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: irqbalance
|
|
|
|
#
|
|
|
|
# IRQ balancing daemon
|
|
|
|
#
|
|
|
|
irqbalance = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: mailman
|
|
|
|
#
|
|
|
|
# Mailman is for managing electronic mail discussion and e-newsletter lists
|
|
|
|
#
|
|
|
|
mailman = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: dbskk
|
|
|
|
#
|
|
|
|
# Dictionary server for the SKK Japanese input method system.
|
|
|
|
#
|
|
|
|
dbskk = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: ldap
|
|
|
|
#
|
|
|
|
# OpenLDAP directory server
|
|
|
|
#
|
|
|
|
ldap = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: tftp
|
|
|
|
#
|
|
|
|
# Trivial file transfer protocol daemon
|
|
|
|
#
|
|
|
|
tftp = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: portmap
|
|
|
|
#
|
|
|
|
# RPC port mapping service.
|
|
|
|
#
|
|
|
|
portmap = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: arpwatch
|
|
|
|
#
|
|
|
|
# Ethernet activity monitor.
|
|
|
|
#
|
|
|
|
arpwatch = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: dovecot
|
|
|
|
#
|
|
|
|
# Dovecot POP and IMAP mail server
|
|
|
|
#
|
|
|
|
dovecot = module
|
|
|
|
|
2006-03-29 20:21:25 +00:00
|
|
|
# Layer: services
|
|
|
|
# Module: amavis
|
|
|
|
#
|
|
|
|
# Daemon that interfaces mail transfer agents and content
|
|
|
|
# checkers, such as virus scanners.
|
|
|
|
#
|
|
|
|
amavis = module
|
|
|
|
|
2006-01-24 15:41:46 +00:00
|
|
|
# Layer: services
|
|
|
|
# Module: cups
|
|
|
|
#
|
|
|
|
# Common UNIX printing system
|
|
|
|
#
|
|
|
|
cups = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: networkmanager
|
|
|
|
#
|
|
|
|
# Manager for dynamically switching between networks.
|
|
|
|
#
|
|
|
|
networkmanager = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: inn
|
|
|
|
#
|
|
|
|
# Internet News NNTP server
|
|
|
|
#
|
|
|
|
inn = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: sysstat
|
|
|
|
#
|
|
|
|
# Policy for sysstat. Reports on various system states
|
|
|
|
#
|
|
|
|
sysstat = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: comsat
|
|
|
|
#
|
|
|
|
# Comsat, a biff server.
|
|
|
|
#
|
|
|
|
comsat = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: squid
|
|
|
|
#
|
|
|
|
# Squid caching http proxy server
|
|
|
|
#
|
|
|
|
squid = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: zebra
|
|
|
|
#
|
|
|
|
# Zebra border gateway protocol network routing service
|
|
|
|
#
|
|
|
|
zebra = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: xfs
|
|
|
|
#
|
|
|
|
# X Windows Font Server
|
|
|
|
#
|
|
|
|
xfs = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: ktalk
|
|
|
|
#
|
|
|
|
# KDE Talk daemon
|
|
|
|
#
|
|
|
|
ktalk = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: procmail
|
|
|
|
#
|
|
|
|
# Procmail mail delivery agent
|
|
|
|
#
|
|
|
|
procmail = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: lpd
|
|
|
|
#
|
|
|
|
# Line printer daemon
|
|
|
|
#
|
|
|
|
lpd = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: cyrus
|
|
|
|
#
|
|
|
|
# Cyrus is an IMAP service intended to be run on sealed servers
|
|
|
|
#
|
|
|
|
cyrus = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: rdisc
|
|
|
|
#
|
|
|
|
# Network router discovery daemon
|
|
|
|
#
|
|
|
|
rdisc = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: nscd
|
|
|
|
#
|
|
|
|
# Name service cache daemon
|
|
|
|
#
|
|
|
|
nscd = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: ppp
|
|
|
|
#
|
|
|
|
# Point to Point Protocol daemon creates links in ppp networks
|
|
|
|
#
|
|
|
|
ppp = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: smartmon
|
|
|
|
#
|
|
|
|
# Smart disk monitoring daemon policy
|
|
|
|
#
|
|
|
|
smartmon = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: ftp
|
|
|
|
#
|
|
|
|
# File transfer protocol service
|
|
|
|
#
|
|
|
|
ftp = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: gpm
|
|
|
|
#
|
|
|
|
# General Purpose Mouse driver
|
|
|
|
#
|
|
|
|
gpm = module
|
|
|
|
|
2006-03-29 20:21:25 +00:00
|
|
|
# Layer: services
|
|
|
|
# Module: audioentropy
|
|
|
|
#
|
|
|
|
# Generate entropy from audio input
|
|
|
|
#
|
|
|
|
audioentropy = module
|
|
|
|
|
2006-01-24 15:41:46 +00:00
|
|
|
# Layer: services
|
|
|
|
# Module: mta
|
|
|
|
#
|
|
|
|
# Policy common to all email tranfer agents.
|
|
|
|
#
|
2006-03-29 20:21:25 +00:00
|
|
|
mta = base
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: rhgb
|
|
|
|
#
|
|
|
|
# Red Hat Graphical Boot
|
|
|
|
#
|
|
|
|
rhgb = module
|
2006-01-24 15:41:46 +00:00
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: postfix
|
|
|
|
#
|
|
|
|
# Postfix email server
|
|
|
|
#
|
|
|
|
postfix = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: fetchmail
|
|
|
|
#
|
|
|
|
# Remote-mail retrieval and forwarding utility
|
|
|
|
#
|
|
|
|
fetchmail = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: ntp
|
|
|
|
#
|
|
|
|
# Network time protocol daemon
|
|
|
|
#
|
|
|
|
ntp = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: bluetooth
|
|
|
|
#
|
|
|
|
# Bluetooth tools and system services.
|
|
|
|
#
|
|
|
|
bluetooth = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: hal
|
|
|
|
#
|
|
|
|
# Hardware abstraction layer
|
|
|
|
#
|
|
|
|
hal = module
|
2007-02-27 18:34:08 +00:00
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: consolekit
|
|
|
|
#
|
|
|
|
# ConsoleKit is a system daemon for tracking what users are logged
|
|
|
|
#
|
|
|
|
consolekit = module
|
2006-01-24 15:41:46 +00:00
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: avahi
|
|
|
|
#
|
|
|
|
# mDNS/DNS-SD daemon implementing Apple ZeroConf architecture
|
|
|
|
#
|
|
|
|
avahi = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: rpc
|
|
|
|
#
|
|
|
|
# Remote Procedure Call Daemon for managment of network based process communication
|
|
|
|
#
|
|
|
|
rpc = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: xserver
|
|
|
|
#
|
|
|
|
# X Windows Server
|
|
|
|
#
|
|
|
|
xserver = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: apache
|
|
|
|
#
|
|
|
|
# Apache web server
|
|
|
|
#
|
|
|
|
apache = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: slrnpull
|
|
|
|
#
|
|
|
|
# Service for downloading news feeds the slrn newsreader.
|
|
|
|
#
|
|
|
|
slrnpull = module
|
|
|
|
|
2006-03-29 20:21:25 +00:00
|
|
|
# Layer: services
|
|
|
|
# Module: clamav
|
|
|
|
#
|
|
|
|
# ClamAV Virus Scanner
|
|
|
|
#
|
|
|
|
clamav = module
|
|
|
|
|
2006-01-24 15:41:46 +00:00
|
|
|
# Layer: services
|
|
|
|
# Module: rsync
|
|
|
|
#
|
|
|
|
# Fast incremental file transfer for synchronization
|
|
|
|
#
|
|
|
|
rsync = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: djbdns
|
|
|
|
#
|
|
|
|
# small and secure DNS daemon
|
|
|
|
#
|
|
|
|
djbdns = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: automount
|
|
|
|
#
|
|
|
|
# Filesystem automounter service.
|
|
|
|
#
|
|
|
|
automount = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: kerberos
|
|
|
|
#
|
|
|
|
# MIT Kerberos admin and KDC
|
|
|
|
#
|
|
|
|
kerberos = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: dhcp
|
|
|
|
#
|
|
|
|
# Dynamic host configuration protocol (DHCP) server
|
|
|
|
#
|
|
|
|
dhcp = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: ssh
|
|
|
|
#
|
|
|
|
# Secure shell client and server policy.
|
|
|
|
#
|
|
|
|
ssh = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: inetd
|
|
|
|
#
|
|
|
|
# Internet services daemon.
|
|
|
|
#
|
|
|
|
inetd = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: mysql
|
|
|
|
#
|
|
|
|
# Policy for MySQL
|
|
|
|
#
|
|
|
|
mysql = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: dictd
|
|
|
|
#
|
|
|
|
# Dictionary daemon
|
|
|
|
#
|
|
|
|
dictd = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: finger
|
|
|
|
#
|
|
|
|
# Finger user information service.
|
|
|
|
#
|
|
|
|
finger = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: radius
|
|
|
|
#
|
|
|
|
# RADIUS authentication and accounting server.
|
|
|
|
#
|
|
|
|
radius = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: spamassassin
|
|
|
|
#
|
|
|
|
# Filter used for removing unsolicited email.
|
|
|
|
#
|
|
|
|
spamassassin = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: radvd
|
|
|
|
#
|
|
|
|
# IPv6 router advertisement daemon
|
|
|
|
#
|
|
|
|
radvd = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: apm
|
|
|
|
#
|
|
|
|
# Advanced power management daemon
|
|
|
|
#
|
|
|
|
apm = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: tcpd
|
|
|
|
#
|
|
|
|
# Policy for TCP daemon.
|
|
|
|
#
|
|
|
|
tcpd = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: stunnel
|
|
|
|
#
|
|
|
|
# SSL Tunneling Proxy
|
|
|
|
#
|
|
|
|
stunnel = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: privoxy
|
|
|
|
#
|
|
|
|
# Privacy enhancing web proxy.
|
|
|
|
#
|
|
|
|
privoxy = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: cvs
|
|
|
|
#
|
|
|
|
# Concurrent versions system
|
|
|
|
#
|
|
|
|
cvs = module
|
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: rlogin
|
|
|
|
#
|
|
|
|
# Remote login daemon
|
|
|
|
#
|
|
|
|
rlogin = module
|
|
|
|
|
2006-05-08 19:26:49 +00:00
|
|
|
# Layer: system
|
|
|
|
# Module: setrans
|
|
|
|
# Required in base
|
|
|
|
#
|
|
|
|
# Policy for setrans
|
|
|
|
#
|
|
|
|
setrans = base
|
|
|
|
|
2006-05-09 21:50:36 +00:00
|
|
|
# Layer: services
|
|
|
|
# Module: openvpn
|
|
|
|
#
|
|
|
|
# Policy for OPENVPN full-featured SSL VPN solution
|
|
|
|
#
|
|
|
|
openvpn = base
|
2006-07-14 20:09:54 +00:00
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: setroubleshoot
|
|
|
|
#
|
|
|
|
# Policy for the SELinux troubleshooting utility
|
|
|
|
#
|
|
|
|
setroubleshoot = base
|
2006-07-28 17:44:17 +00:00
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: nagios
|
|
|
|
#
|
|
|
|
# policy for nagios Host/service/network monitoring program
|
|
|
|
#
|
|
|
|
nagios = module
|
2006-11-30 20:23:49 +00:00
|
|
|
|
|
|
|
# Layer: service
|
|
|
|
# Module: pcscd
|
|
|
|
#
|
|
|
|
# PC/SC Smart Card Daemon
|
|
|
|
#
|
|
|
|
pcscd = module
|
2006-12-12 21:46:24 +00:00
|
|
|
|
|
|
|
# Layer: system
|
|
|
|
# Module: tzdata
|
|
|
|
#
|
|
|
|
# Policy for tzdata-update
|
|
|
|
#
|
|
|
|
tzdata = base
|
2006-12-24 07:31:09 +00:00
|
|
|
|
|
|
|
# Layer: apps
|
|
|
|
# Module: gnome
|
|
|
|
#
|
|
|
|
# gnome session and gconf
|
|
|
|
#
|
|
|
|
gnome = module
|
|
|
|
|
2007-02-12 16:18:31 +00:00
|
|
|
# Layer: services
|
|
|
|
# Module: qmail
|
|
|
|
#
|
|
|
|
# Policy for sendmail.
|
|
|
|
#
|
|
|
|
qmail = module
|
2007-03-01 16:30:20 +00:00
|
|
|
|
|
|
|
# Layer: services
|
|
|
|
# Module: fail2ban
|
|
|
|
#
|
|
|
|
# daiemon that bans IP that makes too many password failures
|
|
|
|
#
|
|
|
|
fail2ban = module
|