add missing userdom interfaces
This commit is contained in:
parent
c7ae9ae1c8
commit
4083191c4b
@ -1582,6 +1582,24 @@ interface(`userdom_manage_user_home_content_dirs',`
|
|||||||
files_search_home($1)
|
files_search_home($1)
|
||||||
')
|
')
|
||||||
|
|
||||||
|
########################################
|
||||||
|
## <summary>
|
||||||
|
## Delete directories in a user home subdirectory.
|
||||||
|
## </summary>
|
||||||
|
## <param name="domain">
|
||||||
|
## <summary>
|
||||||
|
## Domain allowed access.
|
||||||
|
## </summary>
|
||||||
|
## </param>
|
||||||
|
#
|
||||||
|
interface(`userdom_delete_user_home_content_dirs',`
|
||||||
|
gen_require(`
|
||||||
|
type user_home_t;
|
||||||
|
')
|
||||||
|
|
||||||
|
allow $1 user_home_t:dir delete_dir_perms;
|
||||||
|
')
|
||||||
|
|
||||||
########################################
|
########################################
|
||||||
## <summary>
|
## <summary>
|
||||||
## Do not audit attempts to set the
|
## Do not audit attempts to set the
|
||||||
@ -1694,6 +1712,24 @@ interface(`userdom_dontaudit_write_user_home_content_files',`
|
|||||||
dontaudit $1 user_home_t:file write;
|
dontaudit $1 user_home_t:file write;
|
||||||
')
|
')
|
||||||
|
|
||||||
|
########################################
|
||||||
|
## <summary>
|
||||||
|
## Delete files in a user home subdirectory.
|
||||||
|
## </summary>
|
||||||
|
## <param name="domain">
|
||||||
|
## <summary>
|
||||||
|
## Domain allowed access.
|
||||||
|
## </summary>
|
||||||
|
## </param>
|
||||||
|
#
|
||||||
|
interface(`userdom_delete_user_home_content_files',`
|
||||||
|
gen_require(`
|
||||||
|
type user_home_t;
|
||||||
|
')
|
||||||
|
|
||||||
|
allow $1 user_home_t:file delete_file_perms;
|
||||||
|
')
|
||||||
|
|
||||||
########################################
|
########################################
|
||||||
## <summary>
|
## <summary>
|
||||||
## Do not audit attempts to write user home files.
|
## Do not audit attempts to write user home files.
|
||||||
@ -1838,6 +1874,24 @@ interface(`userdom_manage_user_home_content_symlinks',`
|
|||||||
files_search_home($1)
|
files_search_home($1)
|
||||||
')
|
')
|
||||||
|
|
||||||
|
########################################
|
||||||
|
## <summary>
|
||||||
|
## Delete symbolic links in a user home directory.
|
||||||
|
## </summary>
|
||||||
|
## <param name="domain">
|
||||||
|
## <summary>
|
||||||
|
## Domain allowed access.
|
||||||
|
## </summary>
|
||||||
|
## </param>
|
||||||
|
#
|
||||||
|
interface(`userdom_delete_user_home_content_symlinks',`
|
||||||
|
gen_require(`
|
||||||
|
type user_home_t;
|
||||||
|
')
|
||||||
|
|
||||||
|
allow $1 user_home_t:lnk_file delete_lnk_file_perms;
|
||||||
|
')
|
||||||
|
|
||||||
########################################
|
########################################
|
||||||
## <summary>
|
## <summary>
|
||||||
## Create, read, write, and delete named pipes
|
## Create, read, write, and delete named pipes
|
||||||
|
Loading…
Reference in New Issue
Block a user