selinux-policy/policy/modules/roles/secadm.if

52 lines
927 B
Plaintext
Raw Normal View History

## <summary>Security administrator role</summary>
########################################
## <summary>
2008-11-05 16:10:46 +00:00
## Change to the security administrator role.
## </summary>
2008-11-05 16:10:46 +00:00
## <param name="role">
## <summary>
2008-11-05 16:10:46 +00:00
## Role allowed access.
## </summary>
## </param>
## <rolecap/>
#
2008-11-05 16:10:46 +00:00
interface(`secadm_role_change',`
gen_require(`
role secadm_r;
')
allow $1 secadm_r;
')
########################################
## <summary>
2008-11-05 16:10:46 +00:00
## Change from the security administrator role.
## </summary>
## <desc>
## <p>
2008-11-05 16:10:46 +00:00
## Change from the security administrator role to
## the specified role.
## </p>
## <p>
2008-11-05 16:10:46 +00:00
## This is an interface to support third party modules
## and its use is not allowed in upstream reference
## policy.
## </p>
## </desc>
2008-11-05 16:10:46 +00:00
## <param name="role">
## <summary>
2008-11-05 16:10:46 +00:00
## Role allowed access.
## </summary>
## </param>
## <rolecap/>
#
2008-11-05 16:10:46 +00:00
interface(`secadm_role_change_to_template',`
gen_require(`
role secadm_r;
')
allow secadm_r $1;
')