## RADIUS authentication and accounting server. ######################################## ## ## All of the rules required to ## administrate an radius environment. ## ## ## ## Domain allowed access. ## ## ## ## ## Role allowed access. ## ## ## # interface(`radius_admin',` gen_require(` type radiusd_t, radiusd_etc_t, radiusd_log_t; type radiusd_etc_rw_t, radiusd_var_lib_t, radiusd_runtime_t; type radiusd_initrc_exec_t; ') allow $1 radiusd_t:process { ptrace signal_perms }; ps_process_pattern($1, radiusd_t) init_startstop_service($1, $2, radiusd_t, radiusd_initrc_exec_t) files_list_etc($1) admin_pattern($1, { radiusd_etc_t radiusd_etc_rw_t }) logging_list_logs($1) admin_pattern($1, radiusd_log_t) files_list_var_lib($1) admin_pattern($1, radiusd_var_lib_t) files_list_runtime($1) admin_pattern($1, radiusd_runtime_t) ')