2022-01-06 13:55:54 +00:00
|
|
|
policy_module(unprivuser)
|
2008-04-29 13:58:34 +00:00
|
|
|
|
|
|
|
# this module should be named user, but that is
|
|
|
|
# a compile error since user is a keyword.
|
|
|
|
|
|
|
|
########################################
|
|
|
|
#
|
|
|
|
# Declarations
|
|
|
|
#
|
|
|
|
|
2014-09-15 17:22:27 +00:00
|
|
|
#role user_r;
|
2008-04-29 13:58:34 +00:00
|
|
|
|
|
|
|
userdom_unpriv_user_template(user)
|
|
|
|
|
2008-11-05 16:10:46 +00:00
|
|
|
optional_policy(`
|
2021-06-24 18:58:19 +00:00
|
|
|
apache_role(user, user_t, user_application_exec_domain, user_r)
|
2008-11-05 16:10:46 +00:00
|
|
|
')
|
|
|
|
|
2011-09-02 13:20:23 +00:00
|
|
|
optional_policy(`
|
2021-08-08 14:51:19 +00:00
|
|
|
git_client_role_template(user, user_t, user_application_exec_domain, user_r)
|
|
|
|
git_role(user, user_t, user_application_exec_domain, user_r)
|
2011-09-02 13:20:23 +00:00
|
|
|
')
|
|
|
|
|
2019-01-31 02:58:52 +00:00
|
|
|
optional_policy(`
|
|
|
|
modemmanager_dbus_chat(user_t)
|
|
|
|
')
|
|
|
|
|
2008-11-05 16:10:46 +00:00
|
|
|
optional_policy(`
|
2021-06-24 19:01:30 +00:00
|
|
|
screen_role_template(user, user_t, user_application_exec_domain, user_r)
|
2008-11-05 16:10:46 +00:00
|
|
|
')
|
|
|
|
|
2010-10-26 06:34:11 +00:00
|
|
|
optional_policy(`
|
2010-11-01 15:22:07 +00:00
|
|
|
vlock_run(user_t, user_r)
|
2010-10-26 06:34:11 +00:00
|
|
|
')
|
|
|
|
|
2016-12-19 23:48:46 +00:00
|
|
|
optional_policy(`
|
2021-08-08 15:17:52 +00:00
|
|
|
xscreensaver_role(user, user_t, user_application_exec_domain, user_r)
|
2016-12-19 23:48:46 +00:00
|
|
|
')
|
|
|
|
|
2008-11-05 16:10:46 +00:00
|
|
|
optional_policy(`
|
2021-08-08 15:26:55 +00:00
|
|
|
xserver_role(user, user_t, user_application_exec_domain, user_r)
|
2008-11-05 16:10:46 +00:00
|
|
|
')
|
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
ifndef(`distro_redhat',`
|
|
|
|
optional_policy(`
|
2021-08-08 15:29:14 +00:00
|
|
|
auth_role(user, user_t, user_application_exec_domain, user_r)
|
2010-07-21 14:39:57 +00:00
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
2021-08-08 15:31:51 +00:00
|
|
|
bluetooth_role(user, user_t, user_application_exec_domain, user_r)
|
2010-07-21 14:39:57 +00:00
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
2021-08-08 15:33:39 +00:00
|
|
|
cdrecord_role(user, user_t, user_application_exec_domain, user_r)
|
2010-07-21 14:39:57 +00:00
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2019-01-28 08:46:49 +00:00
|
|
|
optional_policy(`
|
2021-08-08 15:37:02 +00:00
|
|
|
chromium_role(user, user_t, user_application_exec_domain, user_r)
|
2019-01-28 08:46:49 +00:00
|
|
|
')
|
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
2021-08-08 15:40:17 +00:00
|
|
|
cron_role(user, user_t, user_application_exec_domain, user_r)
|
2010-07-21 14:39:57 +00:00
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2017-05-26 15:59:31 +00:00
|
|
|
optional_policy(`
|
2021-08-08 15:42:38 +00:00
|
|
|
dirmngr_role(user, user_t, user_application_exec_domain, user_r)
|
2017-05-26 15:59:31 +00:00
|
|
|
')
|
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
2021-08-08 15:46:07 +00:00
|
|
|
evolution_role(user, user_t, user_application_exec_domain, user_r)
|
2010-07-21 14:39:57 +00:00
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
2021-08-08 15:49:05 +00:00
|
|
|
games_role(user, user_t, user_application_exec_domain, user_r)
|
2010-07-21 14:39:57 +00:00
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2021-05-19 12:43:22 +00:00
|
|
|
optional_policy(`
|
2021-08-08 15:52:11 +00:00
|
|
|
gnome_role_template(user, user_t, user_application_exec_domain, user_r)
|
2021-05-19 12:43:22 +00:00
|
|
|
')
|
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
2021-08-08 15:54:44 +00:00
|
|
|
gpg_role(user, user_t, user_application_exec_domain, user_r)
|
2010-07-21 14:39:57 +00:00
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-12-16 17:33:07 +00:00
|
|
|
optional_policy(`
|
2021-08-08 16:52:17 +00:00
|
|
|
hadoop_role(user, user_t, user_application_exec_domain, user_r)
|
2010-12-16 17:33:07 +00:00
|
|
|
')
|
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
2021-08-08 15:57:02 +00:00
|
|
|
irc_role(user, user_t, user_application_exec_domain, user_r)
|
2010-07-21 14:39:57 +00:00
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
2021-08-08 16:00:57 +00:00
|
|
|
java_role(user, user_t, user_application_exec_domain, user_r)
|
2010-07-21 14:39:57 +00:00
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2017-05-13 21:15:27 +00:00
|
|
|
optional_policy(`
|
2021-08-08 16:02:14 +00:00
|
|
|
libmtp_role(user, user_t, user_application_exec_domain, user_r)
|
2017-05-13 21:15:27 +00:00
|
|
|
')
|
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
2021-08-08 16:03:34 +00:00
|
|
|
lpd_role(user, user_t, user_application_exec_domain, user_r)
|
2010-07-21 14:39:57 +00:00
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
2021-08-08 16:07:26 +00:00
|
|
|
mozilla_role(user, user_t, user_application_exec_domain, user_r)
|
2010-07-21 14:39:57 +00:00
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
2021-08-08 16:09:56 +00:00
|
|
|
mplayer_role(user, user_t, user_application_exec_domain, user_r)
|
2010-07-21 14:39:57 +00:00
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
2021-08-08 16:12:59 +00:00
|
|
|
mta_role(user, user_t, user_application_exec_domain, user_r)
|
2010-07-21 14:39:57 +00:00
|
|
|
')
|
2010-02-08 15:34:08 +00:00
|
|
|
|
2016-12-06 20:41:39 +00:00
|
|
|
optional_policy(`
|
2021-08-08 16:14:18 +00:00
|
|
|
ooffice_role(user, user_t, user_application_exec_domain, user_r)
|
2016-12-06 20:41:39 +00:00
|
|
|
')
|
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
2021-08-08 15:00:27 +00:00
|
|
|
postgresql_role(user, user_t, user_application_exec_domain, user_r)
|
2010-07-21 14:39:57 +00:00
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2016-12-16 15:59:31 +00:00
|
|
|
optional_policy(`
|
2021-08-08 16:16:19 +00:00
|
|
|
pulseaudio_role(user, user_t, user_application_exec_domain, user_r)
|
2016-12-16 15:59:31 +00:00
|
|
|
')
|
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
2021-08-08 16:18:31 +00:00
|
|
|
pyzor_role(user, user_t, user_application_exec_domain, user_r)
|
2010-07-21 14:39:57 +00:00
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
2021-08-08 16:20:14 +00:00
|
|
|
razor_role(user, user_t, user_application_exec_domain, user_r)
|
2010-07-21 14:39:57 +00:00
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
2021-08-08 16:26:10 +00:00
|
|
|
rssh_role(user, user_t, user_application_exec_domain, user_r)
|
2010-07-21 14:39:57 +00:00
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2019-01-03 23:20:14 +00:00
|
|
|
optional_policy(`
|
|
|
|
sigrok_run(user_r, user_t)
|
|
|
|
')
|
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
2021-08-08 16:28:07 +00:00
|
|
|
spamassassin_role(user, user_t, user_application_exec_domain, user_r)
|
2010-07-21 14:39:57 +00:00
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
2021-08-08 15:03:01 +00:00
|
|
|
ssh_role_template(user, user_t, user_application_exec_domain, user_r)
|
2010-07-21 14:39:57 +00:00
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
2021-08-08 16:31:19 +00:00
|
|
|
su_role_template(user, user_t, user_application_exec_domain, user_r)
|
2010-07-21 14:39:57 +00:00
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
2021-08-08 15:06:56 +00:00
|
|
|
sudo_role_template(user, user_t, user_application_exec_domain, user_r)
|
2010-07-21 14:39:57 +00:00
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2016-08-21 07:06:32 +00:00
|
|
|
optional_policy(`
|
2021-08-08 15:14:20 +00:00
|
|
|
syncthing_role(user, user_t, user_application_exec_domain, user_r)
|
2016-08-21 07:06:32 +00:00
|
|
|
')
|
|
|
|
|
2021-05-19 12:43:22 +00:00
|
|
|
optional_policy(`
|
2021-08-08 16:34:50 +00:00
|
|
|
telepathy_role_template(user, user_t, user_application_exec_domain, user_r)
|
2021-05-19 12:43:22 +00:00
|
|
|
')
|
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
2021-08-08 16:36:02 +00:00
|
|
|
thunderbird_role(user, user_t, user_application_exec_domain, user_r)
|
2010-07-21 14:39:57 +00:00
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
2021-08-08 16:37:33 +00:00
|
|
|
tvtime_role(user, user_t, user_application_exec_domain, user_r)
|
2010-07-21 14:39:57 +00:00
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
2021-08-08 16:39:42 +00:00
|
|
|
uml_role(user, user_t, user_application_exec_domain, user_r)
|
2010-07-21 14:39:57 +00:00
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
2021-08-08 16:44:01 +00:00
|
|
|
userhelper_role_template(user, user_t, user_application_exec_domain, user_r)
|
2010-07-21 14:39:57 +00:00
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
2021-08-08 16:45:54 +00:00
|
|
|
vmware_role(user, user_t, user_application_exec_domain, user_r)
|
2010-07-21 14:39:57 +00:00
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
|
2010-07-21 14:39:57 +00:00
|
|
|
optional_policy(`
|
2021-08-08 16:47:11 +00:00
|
|
|
wireshark_role(user, user_t, user_application_exec_domain, user_r)
|
2010-07-21 14:39:57 +00:00
|
|
|
')
|
2021-05-19 12:43:22 +00:00
|
|
|
|
|
|
|
optional_policy(`
|
2021-08-08 16:49:44 +00:00
|
|
|
wm_role_template(user, user_t, user_application_exec_domain, user_r)
|
2021-05-19 12:43:22 +00:00
|
|
|
')
|
2008-11-05 16:10:46 +00:00
|
|
|
')
|