~ubuntu-branches/ubuntu/maverick/refpolicy-ubuntu/maverick

« back to all changes in this revision

Viewing changes to policy/modules/admin/tmpreaper.te

  • Committer: Bazaar Package Importer
  • Author(s): Marshall Miller
  • Date: 2009-03-24 02:17:01 UTC
  • Revision ID: james.westby@ubuntu.com-20090324021701-ost9gewrbluclm5r
Tags: upstream-0.2.20090324
ImportĀ upstreamĀ versionĀ 0.2.20090324

Show diffs side-by-side

added added

removed removed

Lines of Context:
 
1
 
 
2
policy_module(tmpreaper, 1.3.0)
 
3
 
 
4
########################################
 
5
#
 
6
# Declarations
 
7
#
 
8
 
 
9
type tmpreaper_t;
 
10
type tmpreaper_exec_t;
 
11
application_domain(tmpreaper_t, tmpreaper_exec_t)
 
12
role system_r types tmpreaper_t;
 
13
 
 
14
########################################
 
15
#
 
16
# Local Policy
 
17
#
 
18
 
 
19
allow tmpreaper_t self:process { fork sigchld };
 
20
allow tmpreaper_t self:capability { dac_override dac_read_search fowner };
 
21
 
 
22
dev_read_urand(tmpreaper_t)
 
23
 
 
24
fs_getattr_xattr_fs(tmpreaper_t)
 
25
 
 
26
files_read_etc_files(tmpreaper_t)
 
27
files_read_var_lib_files(tmpreaper_t)
 
28
files_purge_tmp(tmpreaper_t)
 
29
# why does it need setattr?
 
30
files_setattr_all_tmp_dirs(tmpreaper_t)
 
31
 
 
32
mls_file_read_all_levels(tmpreaper_t)
 
33
mls_file_write_all_levels(tmpreaper_t)
 
34
 
 
35
logging_send_syslog_msg(tmpreaper_t)
 
36
 
 
37
miscfiles_read_localization(tmpreaper_t)
 
38
miscfiles_delete_man_pages(tmpreaper_t)
 
39
 
 
40
cron_system_entry(tmpreaper_t, tmpreaper_exec_t)
 
41
 
 
42
optional_policy(`
 
43
        lpd_manage_spool(tmpreaper_t)
 
44
')