selinux-refpolicy/policy/support/misc_macros.spt

79 lines
1.7 KiB
Cheetah
Raw Normal View History

########################################
#
# Helper macros
#
#
# shiftn(num,list...)
#
# shift the list num times
#
define(`shiftn',`ifelse($1,0,`shift($*)',`shiftn(decr($1),shift(shift($*)))')')
2006-06-12 15:49:48 +00:00
#
# ifndef(expr,true_block,false_block)
#
# m4 does not have this.
#
define(`ifndef',`ifdef(`$1',`$3',`$2')')
2005-11-15 18:47:20 +00:00
#
# __endline__
#
2016-12-06 12:28:10 +00:00
# dummy macro to insert a newline. used for
2005-11-15 18:47:20 +00:00
# errprint, so the close parentheses can be
# indented correctly.
#
define(`__endline__',`
')
########################################
#
# refpolwarn(message)
#
# print a warning message
#
define(`refpolicywarn',`errprint(__file__:__line__: Warning: `$1'__endline__)')
########################################
#
# refpolerr(message)
#
# print an error message. does not
# make anything fail.
#
define(`refpolicyerr',`errprint(__file__:__line__: Error: `$1'__endline__)')
2005-09-12 15:17:39 +00:00
########################################
#
2006-02-15 19:46:20 +00:00
# gen_user(username, prefix, role_set, mls_defaultlevel, mls_range, [mcs_categories])
#
define(`gen_user',`dnl
ifdef(`users_extra',`dnl
ifelse(`$2',,,`user $1 prefix $2;')
',`dnl
user $1 roles { $3 }`'ifdef(`enable_mls', ` level $4 range $5')`'ifdef(`enable_mcs',` level s0 range s0`'ifelse(`$6',,,` - s0:$6')');
')dnl
')
2005-09-12 15:17:39 +00:00
########################################
#
# gen_context(context,mls_sensitivity,[mcs_categories])
#
define(`gen_context',`$1`'ifdef(`enable_mls',`:$2')`'ifdef(`enable_mcs',`:s0`'ifelse(`$3',,,`:$3')')')dnl
2005-06-09 23:06:07 +00:00
2005-06-21 17:01:45 +00:00
########################################
#
# can_exec(domain,executable)
#
define(`can_exec',`allow $1 $2:file { mmap_file_perms ioctl lock execute_no_trans };')
2005-06-21 17:01:45 +00:00
########################################
#
# gen_bool(name,default_value)
#
define(`gen_bool',`
bool $1 dflt_or_overr(`$1'_conf,$2);
')