551 lines
9.5 KiB
HTML
551 lines
9.5 KiB
HTML
<html>
|
|
<head>
|
|
<title>
|
|
Security Enhanced Linux Reference Policy
|
|
</title>
|
|
<style type="text/css" media="all">@import "style.css";</style>
|
|
</head>
|
|
<body>
|
|
<div id="Header">Security Enhanced Linux Reference Policy</div>
|
|
<div id='Menu'>
|
|
|
|
<a href="admin.html">+
|
|
admin</a></br/>
|
|
<div id='subitem'>
|
|
|
|
- <a href='admin_consoletype.html'>
|
|
consoletype</a><br/>
|
|
|
|
- <a href='admin_dmesg.html'>
|
|
dmesg</a><br/>
|
|
|
|
- <a href='admin_logrotate.html'>
|
|
logrotate</a><br/>
|
|
|
|
- <a href='admin_netutils.html'>
|
|
netutils</a><br/>
|
|
|
|
- <a href='admin_rpm.html'>
|
|
rpm</a><br/>
|
|
|
|
- <a href='admin_usermanage.html'>
|
|
usermanage</a><br/>
|
|
|
|
</div>
|
|
|
|
<a href="apps.html">+
|
|
apps</a></br/>
|
|
<div id='subitem'>
|
|
|
|
- <a href='apps_gpg.html'>
|
|
gpg</a><br/>
|
|
|
|
</div>
|
|
|
|
<a href="kernel.html">+
|
|
kernel</a></br/>
|
|
<div id='subitem'>
|
|
|
|
- <a href='kernel_bootloader.html'>
|
|
bootloader</a><br/>
|
|
|
|
- <a href='kernel_corenetwork.html'>
|
|
corenetwork</a><br/>
|
|
|
|
- <a href='kernel_devices.html'>
|
|
devices</a><br/>
|
|
|
|
- <a href='kernel_filesystem.html'>
|
|
filesystem</a><br/>
|
|
|
|
- <a href='kernel_kernel.html'>
|
|
kernel</a><br/>
|
|
|
|
- <a href='kernel_selinux.html'>
|
|
selinux</a><br/>
|
|
|
|
- <a href='kernel_storage.html'>
|
|
storage</a><br/>
|
|
|
|
- <a href='kernel_terminal.html'>
|
|
terminal</a><br/>
|
|
|
|
</div>
|
|
|
|
<a href="services.html">+
|
|
services</a></br/>
|
|
<div id='subitem'>
|
|
|
|
- <a href='services_cron.html'>
|
|
cron</a><br/>
|
|
|
|
- <a href='services_inetd.html'>
|
|
inetd</a><br/>
|
|
|
|
- <a href='services_kerberos.html'>
|
|
kerberos</a><br/>
|
|
|
|
- <a href='services_mta.html'>
|
|
mta</a><br/>
|
|
|
|
- <a href='services_nis.html'>
|
|
nis</a><br/>
|
|
|
|
- <a href='services_nscd.html'>
|
|
nscd</a><br/>
|
|
|
|
- <a href='services_remotelogin.html'>
|
|
remotelogin</a><br/>
|
|
|
|
- <a href='services_sendmail.html'>
|
|
sendmail</a><br/>
|
|
|
|
- <a href='services_ssh.html'>
|
|
ssh</a><br/>
|
|
|
|
</div>
|
|
|
|
<a href="system.html">+
|
|
system</a></br/>
|
|
<div id='subitem'>
|
|
|
|
- <a href='system_authlogin.html'>
|
|
authlogin</a><br/>
|
|
|
|
- <a href='system_clock.html'>
|
|
clock</a><br/>
|
|
|
|
- <a href='system_corecommands.html'>
|
|
corecommands</a><br/>
|
|
|
|
- <a href='system_domain.html'>
|
|
domain</a><br/>
|
|
|
|
- <a href='system_files.html'>
|
|
files</a><br/>
|
|
|
|
- <a href='system_fstools.html'>
|
|
fstools</a><br/>
|
|
|
|
- <a href='system_getty.html'>
|
|
getty</a><br/>
|
|
|
|
- <a href='system_hostname.html'>
|
|
hostname</a><br/>
|
|
|
|
- <a href='system_hotplug.html'>
|
|
hotplug</a><br/>
|
|
|
|
- <a href='system_init.html'>
|
|
init</a><br/>
|
|
|
|
- <a href='system_ipsec.html'>
|
|
ipsec</a><br/>
|
|
|
|
- <a href='system_iptables.html'>
|
|
iptables</a><br/>
|
|
|
|
- <a href='system_libraries.html'>
|
|
libraries</a><br/>
|
|
|
|
- <a href='system_locallogin.html'>
|
|
locallogin</a><br/>
|
|
|
|
- <a href='system_logging.html'>
|
|
logging</a><br/>
|
|
|
|
- <a href='system_lvm.html'>
|
|
lvm</a><br/>
|
|
|
|
- <a href='system_miscfiles.html'>
|
|
miscfiles</a><br/>
|
|
|
|
- <a href='system_modutils.html'>
|
|
modutils</a><br/>
|
|
|
|
- <a href='system_mount.html'>
|
|
mount</a><br/>
|
|
|
|
- <a href='system_pcmcia.html'>
|
|
pcmcia</a><br/>
|
|
|
|
- <a href='system_raid.html'>
|
|
raid</a><br/>
|
|
|
|
- <a href='system_selinuxutil.html'>
|
|
selinuxutil</a><br/>
|
|
|
|
- <a href='system_sysnetwork.html'>
|
|
sysnetwork</a><br/>
|
|
|
|
- <a href='system_udev.html'>
|
|
udev</a><br/>
|
|
|
|
- <a href='system_unconfined.html'>
|
|
unconfined</a><br/>
|
|
|
|
- <a href='system_userdomain.html'>
|
|
userdomain</a><br/>
|
|
|
|
</div>
|
|
|
|
<br/><p/>
|
|
<a href="global_booleans.html">* Global Booleans </a>
|
|
<br/><p/>
|
|
<a href="global_tunables.html">* Global Tunables </a>
|
|
<p/><br/><p/>
|
|
<a href="index.html">* Layer Index</a>
|
|
<br/><p/>
|
|
<a href="interfaces.html">* Interface Index</a>
|
|
<br/><p/>
|
|
<a href="templates.html">* Template Index</a>
|
|
</div>
|
|
|
|
<div id="Content">
|
|
<h3>Master template index:</h3>
|
|
|
|
|
|
<div id="templatesmall">
|
|
Module: <a href='system_userdomain.html#link_admin_user_template'>
|
|
userdomain</a><p/>
|
|
Layer: <a href='system.html'>
|
|
system</a><p/>
|
|
<div id="codeblock">
|
|
|
|
<b>admin_user_template</b>(
|
|
|
|
|
|
|
|
|
|
userdomain_prefix
|
|
|
|
|
|
)<br>
|
|
</div>
|
|
|
|
<div id="description">
|
|
<p>
|
|
The template for creating an administrative user.
|
|
</p>
|
|
</div>
|
|
|
|
</div>
|
|
|
|
<div id="templatesmall">
|
|
Module: <a href='system_authlogin.html#link_authlogin_per_userdomain_template'>
|
|
authlogin</a><p/>
|
|
Layer: <a href='system.html'>
|
|
system</a><p/>
|
|
<div id="codeblock">
|
|
|
|
<b>authlogin_per_userdomain_template</b>(
|
|
|
|
|
|
|
|
|
|
userdomain_prefix
|
|
|
|
|
|
)<br>
|
|
</div>
|
|
|
|
<div id="description">
|
|
<p>
|
|
The per user domain template for the authlogin module.
|
|
</p>
|
|
</div>
|
|
|
|
</div>
|
|
|
|
<div id="templatesmall">
|
|
Module: <a href='system_userdomain.html#link_base_user_template'>
|
|
userdomain</a><p/>
|
|
Layer: <a href='system.html'>
|
|
system</a><p/>
|
|
<div id="codeblock">
|
|
|
|
<b>base_user_template</b>(
|
|
|
|
|
|
|
|
|
|
userdomain_prefix
|
|
|
|
|
|
)<br>
|
|
</div>
|
|
|
|
<div id="description">
|
|
<p>
|
|
The template containing rules common to unprivileged
|
|
users and administrative users.
|
|
</p>
|
|
</div>
|
|
|
|
</div>
|
|
|
|
<div id="templatesmall">
|
|
Module: <a href='services_cron.html#link_cron_admin_template'>
|
|
cron</a><p/>
|
|
Layer: <a href='services.html'>
|
|
services</a><p/>
|
|
<div id="codeblock">
|
|
|
|
<b>cron_admin_template</b>(
|
|
|
|
|
|
|
|
|
|
userdomain_prefix
|
|
|
|
|
|
)<br>
|
|
</div>
|
|
|
|
<div id="description">
|
|
<p>
|
|
The administrative functions template for the cron module.
|
|
</p>
|
|
</div>
|
|
|
|
</div>
|
|
|
|
<div id="templatesmall">
|
|
Module: <a href='services_cron.html#link_cron_per_userdomain_template'>
|
|
cron</a><p/>
|
|
Layer: <a href='services.html'>
|
|
services</a><p/>
|
|
<div id="codeblock">
|
|
|
|
<b>cron_per_userdomain_template</b>(
|
|
|
|
|
|
|
|
|
|
userdomain_prefix
|
|
|
|
|
|
)<br>
|
|
</div>
|
|
|
|
<div id="description">
|
|
<p>
|
|
The per user domain template for the cron module.
|
|
</p>
|
|
</div>
|
|
|
|
</div>
|
|
|
|
<div id="templatesmall">
|
|
Module: <a href='system_domain.html#link_domain_auto_trans'>
|
|
domain</a><p/>
|
|
Layer: <a href='system.html'>
|
|
system</a><p/>
|
|
<div id="codeblock">
|
|
|
|
<b>domain_auto_trans</b>(
|
|
|
|
|
|
|
|
|
|
?
|
|
|
|
|
|
)<br>
|
|
</div>
|
|
|
|
<div id="description">
|
|
<p>
|
|
Summary is missing!
|
|
</p>
|
|
</div>
|
|
|
|
</div>
|
|
|
|
<div id="templatesmall">
|
|
Module: <a href='system_domain.html#link_domain_trans'>
|
|
domain</a><p/>
|
|
Layer: <a href='system.html'>
|
|
system</a><p/>
|
|
<div id="codeblock">
|
|
|
|
<b>domain_trans</b>(
|
|
|
|
|
|
|
|
|
|
?
|
|
|
|
|
|
)<br>
|
|
</div>
|
|
|
|
<div id="description">
|
|
<p>
|
|
Summary is missing!
|
|
</p>
|
|
</div>
|
|
|
|
</div>
|
|
|
|
<div id="templatesmall">
|
|
Module: <a href='apps_gpg.html#link_gpg_per_userdomain_template'>
|
|
gpg</a><p/>
|
|
Layer: <a href='apps.html'>
|
|
apps</a><p/>
|
|
<div id="codeblock">
|
|
|
|
<b>gpg_per_userdomain_template</b>(
|
|
|
|
|
|
|
|
|
|
userdomain_prefix
|
|
|
|
|
|
)<br>
|
|
</div>
|
|
|
|
<div id="description">
|
|
<p>
|
|
The per user domain template for the gpg module.
|
|
</p>
|
|
</div>
|
|
|
|
</div>
|
|
|
|
<div id="templatesmall">
|
|
Module: <a href='services_mta.html#link_mta_per_userdomain_template'>
|
|
mta</a><p/>
|
|
Layer: <a href='services.html'>
|
|
services</a><p/>
|
|
<div id="codeblock">
|
|
|
|
<b>mta_per_userdomain_template</b>(
|
|
|
|
|
|
|
|
|
|
?
|
|
|
|
|
|
)<br>
|
|
</div>
|
|
|
|
<div id="description">
|
|
<p>
|
|
Summary is missing!
|
|
</p>
|
|
</div>
|
|
|
|
</div>
|
|
|
|
<div id="templatesmall">
|
|
Module: <a href='services_ssh.html#link_ssh_per_userdomain_template'>
|
|
ssh</a><p/>
|
|
Layer: <a href='services.html'>
|
|
services</a><p/>
|
|
<div id="codeblock">
|
|
|
|
<b>ssh_per_userdomain_template</b>(
|
|
|
|
|
|
|
|
|
|
userdomain_prefix
|
|
|
|
|
|
)<br>
|
|
</div>
|
|
|
|
<div id="description">
|
|
<p>
|
|
The per user domain template for the ssh module.
|
|
</p>
|
|
</div>
|
|
|
|
</div>
|
|
|
|
<div id="templatesmall">
|
|
Module: <a href='services_ssh.html#link_ssh_server_template'>
|
|
ssh</a><p/>
|
|
Layer: <a href='services.html'>
|
|
services</a><p/>
|
|
<div id="codeblock">
|
|
|
|
<b>ssh_server_template</b>(
|
|
|
|
|
|
|
|
|
|
userdomain_prefix
|
|
|
|
|
|
)<br>
|
|
</div>
|
|
|
|
<div id="description">
|
|
<p>
|
|
The template to define a ssh server.
|
|
</p>
|
|
</div>
|
|
|
|
</div>
|
|
|
|
<div id="templatesmall">
|
|
Module: <a href='system_unconfined.html#link_unconfined_domain_template'>
|
|
unconfined</a><p/>
|
|
Layer: <a href='system.html'>
|
|
system</a><p/>
|
|
<div id="codeblock">
|
|
|
|
<b>unconfined_domain_template</b>(
|
|
|
|
|
|
|
|
|
|
domain
|
|
|
|
|
|
)<br>
|
|
</div>
|
|
|
|
<div id="description">
|
|
<p>
|
|
A template to make the specified domain unconfined.
|
|
</p>
|
|
</div>
|
|
|
|
</div>
|
|
|
|
<div id="templatesmall">
|
|
Module: <a href='system_userdomain.html#link_unpriv_user_template'>
|
|
userdomain</a><p/>
|
|
Layer: <a href='system.html'>
|
|
system</a><p/>
|
|
<div id="codeblock">
|
|
|
|
<b>unpriv_user_template</b>(
|
|
|
|
|
|
|
|
|
|
userdomain_prefix
|
|
|
|
|
|
)<br>
|
|
</div>
|
|
|
|
<div id="description">
|
|
<p>
|
|
The template for creating a unprivileged user.
|
|
</p>
|
|
</div>
|
|
|
|
</div>
|
|
|
|
|
|
</div>
|
|
</body>
|
|
</html>
|