|
Server : Apache System : Linux server.mata-lashes.com 3.10.0-1160.90.1.el7.x86_64 #1 SMP Thu May 4 15:21:22 UTC 2023 x86_64 User : matalashes ( 1004) PHP Version : 8.1.29 Disable Function : NONE Directory : /usr/share/selinux/devel/include/contrib/ |
Upload File : |
## <summary>Advanced Linux Sound Architecture utilities.</summary> ######################################## ## <summary> ## Role access for alsa. ## </summary> ## <param name="role"> ## <summary> ## Role allowed access. ## </summary> ## </param> ## <param name="domain"> ## <summary> ## User domain for the role. ## </summary> ## </param> # template(`alsa_role',` refpolicywarn(`$0($*) has been deprecated') ') ######################################## ## <summary> ## Execute a domain transition to run Alsa. ## </summary> ## <param name="domain"> ## <summary> ## Domain allowed to transition. ## </summary> ## </param> # interface(`alsa_domtrans',` gen_require(` type alsa_t, alsa_exec_t; ') corecmd_search_bin($1) domtrans_pattern($1, alsa_exec_t, alsa_t) ') ######################################## ## <summary> ## Execute a domain transition to run ## Alsa, and allow the specified role ## the Alsa domain. ## </summary> ## <param name="domain"> ## <summary> ## Domain allowed to transition. ## </summary> ## </param> ## <param name="role"> ## <summary> ## Role allowed access. ## </summary> ## </param> # interface(`alsa_run',` gen_require(` attribute_role alsa_roles; ') alsa_domtrans($1) roleattribute $2 alsa_roles; ') ######################################## ## <summary> ## Read and write Alsa semaphores. ## </summary> ## <param name="domain"> ## <summary> ## Domain allowed access. ## </summary> ## </param> # interface(`alsa_rw_semaphores',` gen_require(` type alsa_t; ') allow $1 alsa_t:sem rw_sem_perms; ') ######################################## ## <summary> ## Read and write Alsa shared memory. ## </summary> ## <param name="domain"> ## <summary> ## Domain allowed access. ## </summary> ## </param> # interface(`alsa_rw_shared_mem',` gen_require(` type alsa_t; ') allow $1 alsa_t:shm rw_shm_perms; ') ######################################## ## <summary> ## Read writable Alsa configuration content. ## </summary> ## <param name="domain"> ## <summary> ## Domain allowed access. ## </summary> ## </param> # interface(`alsa_read_rw_config',` gen_require(` type alsa_etc_rw_t; ') files_search_etc($1) allow $1 alsa_etc_rw_t:dir list_dir_perms; read_files_pattern($1, alsa_etc_rw_t, alsa_etc_rw_t) read_lnk_files_pattern($1, alsa_etc_rw_t, alsa_etc_rw_t) ifdef(`distro_debian',` files_search_usr($1) ') ') ######################################## ## <summary> ## Manage writable Alsa config files. ## </summary> ## <param name="domain"> ## <summary> ## Domain allowed access. ## </summary> ## </param> # interface(`alsa_manage_rw_config',` gen_require(` type alsa_etc_rw_t; ') files_search_etc($1) allow $1 alsa_etc_rw_t:dir list_dir_perms; manage_files_pattern($1, alsa_etc_rw_t, alsa_etc_rw_t) read_lnk_files_pattern($1, alsa_etc_rw_t, alsa_etc_rw_t) ifdef(`distro_debian',` files_search_usr($1) ') ') ######################################## ## <summary> ## Create, read, write, and delete ## alsa home files. ## </summary> ## <param name="domain"> ## <summary> ## Domain allowed access. ## </summary> ## </param> # interface(`alsa_manage_home_files',` gen_require(` type alsa_home_t; ') userdom_search_user_home_dirs($1) allow $1 alsa_home_t:file manage_file_perms; alsa_filetrans_home_content($1) ') ######################################## ## <summary> ## Read Alsa home files. ## </summary> ## <param name="domain"> ## <summary> ## Domain allowed access. ## </summary> ## </param> # interface(`alsa_read_home_files',` gen_require(` type alsa_home_t; ') userdom_search_user_home_dirs($1) allow $1 alsa_home_t:file read_file_perms; ') ######################################## ## <summary> ## Relabel alsa home files. ## </summary> ## <param name="domain"> ## <summary> ## Domain allowed access. ## </summary> ## </param> # interface(`alsa_relabel_home_files',` gen_require(` type alsa_home_t; ') userdom_search_user_home_dirs($1) allow $1 alsa_home_t:file relabel_file_perms; ') ######################################## ## <summary> ## Read Alsa lib files. ## </summary> ## <param name="domain"> ## <summary> ## Domain allowed access. ## </summary> ## </param> # interface(`alsa_read_lib',` gen_require(` type alsa_var_lib_t; ') files_search_var_lib($1) read_files_pattern($1, alsa_var_lib_t, alsa_var_lib_t) ') ######################################## ## <summary> ## Transition to alsa named content ## </summary> ## <param name="domain"> ## <summary> ## Domain allowed access. ## </summary> ## </param> # interface(`alsa_filetrans_home_content',` gen_require(` type alsa_home_t; ') userdom_user_home_dir_filetrans($1, alsa_home_t, file, ".asoundrc") ') ######################################## ## <summary> ## Transition to alsa named content ## </summary> ## <param name="domain"> ## <summary> ## Domain allowed access. ## </summary> ## </param> # interface(`alsa_filetrans_named_content',` gen_require(` type alsa_home_t; type alsa_etc_rw_t; type alsa_var_lib_t; ') files_etc_filetrans($1, alsa_etc_rw_t, file, "asound.state") files_etc_filetrans($1, alsa_etc_rw_t, dir, "pcm") files_etc_filetrans($1, alsa_etc_rw_t, dir, "asound") files_usr_filetrans($1, alsa_etc_rw_t, file, "alsa.conf") files_usr_filetrans($1, alsa_etc_rw_t, dir, "pcm") files_var_lib_filetrans($1, alsa_var_lib_t, dir, "alsa") ') ######################################## ## <summary> ## Execute alsa server in the alsa domain. ## </summary> ## <param name="domain"> ## <summary> ## Domain allowed to transition. ## </summary> ## </param> # interface(`alsa_systemctl',` gen_require(` type alsa_t; type alsa_unit_file_t; ') systemd_exec_systemctl($1) init_reload_services($1) allow $1 alsa_unit_file_t:file read_file_perms; allow $1 alsa_unit_file_t:service manage_service_perms; ps_process_pattern($1, alsa_t) ') ######################################### ## <summary> ## Write Alsa lib files. ## </summary> ## <param name="domain"> ## <summary> ## Domain allowed access. ## </summary> ## </param> # interface(`alsa_write_lib',` gen_require(` type alsa_var_lib_t; ') files_search_var_lib($1) write_files_pattern($1, alsa_var_lib_t, alsa_var_lib_t) ')