add missing userdom interfaces

This commit is contained in:
Chris PeBenito 2009-07-28 09:35:46 -04:00
parent c7ae9ae1c8
commit 4083191c4b

View File

@ -1582,6 +1582,24 @@ interface(`userdom_manage_user_home_content_dirs',`
files_search_home($1) files_search_home($1)
') ')
########################################
## <summary>
## Delete directories in a user home subdirectory.
## </summary>
## <param name="domain">
## <summary>
## Domain allowed access.
## </summary>
## </param>
#
interface(`userdom_delete_user_home_content_dirs',`
gen_require(`
type user_home_t;
')
allow $1 user_home_t:dir delete_dir_perms;
')
######################################## ########################################
## <summary> ## <summary>
## Do not audit attempts to set the ## Do not audit attempts to set the
@ -1694,6 +1712,24 @@ interface(`userdom_dontaudit_write_user_home_content_files',`
dontaudit $1 user_home_t:file write; dontaudit $1 user_home_t:file write;
') ')
########################################
## <summary>
## Delete files in a user home subdirectory.
## </summary>
## <param name="domain">
## <summary>
## Domain allowed access.
## </summary>
## </param>
#
interface(`userdom_delete_user_home_content_files',`
gen_require(`
type user_home_t;
')
allow $1 user_home_t:file delete_file_perms;
')
######################################## ########################################
## <summary> ## <summary>
## Do not audit attempts to write user home files. ## Do not audit attempts to write user home files.
@ -1838,6 +1874,24 @@ interface(`userdom_manage_user_home_content_symlinks',`
files_search_home($1) files_search_home($1)
') ')
########################################
## <summary>
## Delete symbolic links in a user home directory.
## </summary>
## <param name="domain">
## <summary>
## Domain allowed access.
## </summary>
## </param>
#
interface(`userdom_delete_user_home_content_symlinks',`
gen_require(`
type user_home_t;
')
allow $1 user_home_t:lnk_file delete_lnk_file_perms;
')
######################################## ########################################
## <summary> ## <summary>
## Create, read, write, and delete named pipes ## Create, read, write, and delete named pipes