## Authoritative only name server ######################################## ## ## Send and receive datagrams from NSD. ## ## ## ## Domain allowed access. ## ## # interface(`nsd_udp_chat',` gen_require(` type nsd_t; ') allow $1 nsd_t:udp_socket sendto; allow nsd_t $1:udp_socket recvfrom; ') ######################################## ## ## Connect to NSD over a TCP socket ## ## ## ## Domain allowed access. ## ## # interface(`nsd_tcp_connect',` gen_require(` type nsd_t; ') allow $1 nsd_t:tcp_socket { connectto recvfrom }; allow nsd_t $1:tcp_socket { acceptfrom recvfrom }; kernel_tcp_recvfrom($1) ')