]> git.ipfire.org Git - people/stevee/selinux-policy.git/blob - policy/modules/apps/firewallgui.if
Merge upstream
[people/stevee/selinux-policy.git] / policy / modules / apps / firewallgui.if
1
2 ## <summary>policy for firewallgui</summary>
3
4 ########################################
5 ## <summary>
6 ## Send and receive messages from
7 ## firewallgui over dbus.
8 ## </summary>
9 ## <param name="domain">
10 ## <summary>
11 ## Domain allowed access.
12 ## </summary>
13 ## </param>
14 #
15 interface(`firewallgui_dbus_chat',`
16 gen_require(`
17 type firewallgui_t;
18 class dbus send_msg;
19 ')
20
21 allow $1 firewallgui_t:dbus send_msg;
22 allow firewallgui_t $1:dbus send_msg;
23 ')
24
25 ########################################
26 ## <summary>
27 ## Read and write firewallgui unnamed pipes.
28 ## </summary>
29 ## <param name="domain">
30 ## <summary>
31 ## Domain allowed access.
32 ## </summary>
33 ## </param>
34 #
35 interface(`firewallgui_dontaudit_rw_pipes',`
36 gen_require(`
37 type firewallgui_t;
38 ')
39
40 dontaudit $1 firewallgui_t:fifo_file rw_inherited_fifo_file_perms;
41 ')