To facilitate handling user home content (through the user_home_content_type attribute) the following interfaces are provided: - userdom_read_all_user_home_content - userdom_manage_all_user_home_content Domains that are granted these privileges are able to read (or manage) all user home content, so not only the generic one (user_home_t) but all types that have been assigned the user_home_content_type attribute. This is more than just user_home_t and the XDG types, so the use should not be granted automatically. As part of the larger XDG patch set, these interfaces are called through the *_read_all_user_content and *_manage_all_user_content booleans which are by default not enabled. Changes since v2: - Fix typo in pattern call Signed-off-by: Sven Vermeulen <sven.vermeulen@siphos.be> |
||
---|---|---|
.. | ||
admin | ||
apps | ||
contrib@f39e8bd2eb | ||
kernel | ||
roles | ||
services | ||
system |