2014-04-11 15:21:03 +00:00
|
|
|
policy_module(staff, 2.5.1)
|
2008-04-29 13:58:34 +00:00
|
|
|
|
|
|
|
########################################
|
|
|
|
#
|
|
|
|
# Declarations
|
|
|
|
#
|
|
|
|
|
|
|
|
role staff_r;
|
|
|
|
|
|
|
|
userdom_unpriv_user_template(staff)
|
|
|
|
|
|
|
|
########################################
|
|
|
|
#
|
|
|
|
# Local policy
|
|
|
|
#
|
|
|
|
|
|
|
|
optional_policy(`
|
2008-11-05 16:10:46 +00:00
|
|
|
apache_role(staff_r, staff_t)
|
2008-04-29 13:58:34 +00:00
|
|
|
')
|
|
|
|
|
|
|
|
optional_policy(`
|
2008-11-05 16:10:46 +00:00
|
|
|
auditadm_role_change(staff_r)
|
2008-04-29 13:58:34 +00:00
|
|
|
')
|
|
|
|
|
2010-08-19 12:41:39 +00:00
|
|
|
optional_policy(`
|
|
|
|
dbadm_role_change(staff_r)
|
|
|
|
')
|
|
|
|
|
2011-09-02 13:20:23 +00:00
|
|
|
optional_policy(`
|
|
|
|
git_role(staff_r, staff_t)
|
|
|
|
')
|
|
|
|
|
2008-11-05 16:10:46 +00:00
|
|
|
optional_policy(`
|
2010-07-21 14:39:57 +00:00
|
|
|
postgresql_role(staff_r, staff_t)
|
2008-11-05 16:10:46 +00:00
|
|
|
')
|
|
|
|
|
|
|
|
optional_policy(`
|
2010-07-21 14:39:57 +00:00
|
|
|
secadm_role_change(staff_r)
|
2008-11-05 16:10:46 +00:00
|
|
|
')
|
|
|
|
|
|
|
|
optional_policy(`
|
2010-07-21 14:39:57 +00:00
|
|
|
ssh_role_template(staff, staff_r, staff_t)
|
2008-11-05 16:10:46 +00:00
|
|
|
')
|
|
|
|
|
|
|
|
optional_policy(`
|
2010-07-21 14:39:57 +00:00
|
|
|
sudo_role_template(staff, staff_r, staff_t)
|
2008-11-05 16:10:46 +00:00
|
|
|
')
|
|
|
|
|
|
|
|
optional_policy(`
|
2010-07-21 14:39:57 +00:00
|
|
|
sysadm_role_change(staff_r)
|
|
|
|
userdom_dontaudit_use_user_terminals(staff_t)
|
2008-11-05 16:10:46 +00:00
|
|
|
')
|
|
|
|
|
2010-10-26 06:34:11 +00:00
|
|
|
optional_policy(`
|
2010-11-01 15:22:07 +00:00
|
|
|
vlock_run(staff_t, staff_r)
|
2010-10-26 06:34:11 +00:00
|
|
|
')
|
|
|
|
|
2008-11-05 16:10:46 +00:00
|
|
|
optional_policy(`
|
2010-07-21 14:39:57 +00:00
|
|
|
xserver_role(staff_r, staff_t)
|
2008-11-05 16:10:46 +00:00
|
|
|
')
|
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
ifndef(`distro_redhat',`
|
|
|
|
optional_policy(`
|
|
|
|
auth_role(staff_r, staff_t)
|
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
|
|
|
bluetooth_role(staff_r, staff_t)
|
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
|
|
|
cdrecord_role(staff_r, staff_t)
|
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
|
|
|
cron_role(staff_r, staff_t)
|
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
|
|
|
dbus_role_template(staff, staff_r, staff_t)
|
2012-10-22 12:48:22 +00:00
|
|
|
|
|
|
|
optional_policy(`
|
|
|
|
gnome_role_template(staff, staff_r, staff_t)
|
|
|
|
')
|
2013-11-09 09:45:16 +00:00
|
|
|
|
|
|
|
optional_policy(`
|
|
|
|
pulseaudio_role(staff_r, staff_t)
|
|
|
|
')
|
2014-04-05 18:01:21 +00:00
|
|
|
|
|
|
|
optional_policy(`
|
|
|
|
telepathy_role_template(staff, staff_r, staff_t)
|
|
|
|
')
|
2010-07-21 14:39:57 +00:00
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
|
|
|
evolution_role(staff_r, staff_t)
|
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
|
|
|
games_role(staff_r, staff_t)
|
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
|
|
|
gift_role(staff_r, staff_t)
|
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
|
|
|
gpg_role(staff_r, staff_t)
|
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
|
|
|
irc_role(staff_r, staff_t)
|
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
|
|
|
java_role(staff_r, staff_t)
|
|
|
|
')
|
2010-02-08 15:34:08 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
|
|
|
lockdev_role(staff_r, staff_t)
|
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
|
|
|
lpd_role(staff_r, staff_t)
|
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
|
|
|
mozilla_role(staff_r, staff_t)
|
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
|
|
|
mplayer_role(staff_r, staff_t)
|
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
|
|
|
mta_role(staff_r, staff_t)
|
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
|
|
|
pyzor_role(staff_r, staff_t)
|
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
|
|
|
razor_role(staff_r, staff_t)
|
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
|
|
|
rssh_role(staff_r, staff_t)
|
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
|
|
|
screen_role_template(staff, staff_r, staff_t)
|
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
|
|
|
spamassassin_role(staff_r, staff_t)
|
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
|
|
|
su_role_template(staff, staff_r, staff_t)
|
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
|
|
|
thunderbird_role(staff_r, staff_t)
|
|
|
|
')
|
|
|
|
|
|
|
|
optional_policy(`
|
|
|
|
tvtime_role(staff_r, staff_t)
|
|
|
|
')
|
|
|
|
|
|
|
|
optional_policy(`
|
|
|
|
uml_role(staff_r, staff_t)
|
|
|
|
')
|
|
|
|
|
|
|
|
optional_policy(`
|
|
|
|
userhelper_role_template(staff, staff_r, staff_t)
|
|
|
|
')
|
|
|
|
|
|
|
|
optional_policy(`
|
|
|
|
vmware_role(staff_r, staff_t)
|
|
|
|
')
|
|
|
|
|
|
|
|
optional_policy(`
|
|
|
|
wireshark_role(staff_r, staff_t)
|
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
')
|