1 policy_module(vdagent,1.0.0)
3 ########################################
10 init_daemon_domain(vdagent_t, vdagent_exec_t)
12 type vdagent_var_run_t;
13 files_pid_file(vdagent_var_run_t)
16 logging_log_file(vdagent_log_t)
18 ########################################
20 # vdagent local policy
23 dontaudit vdagent_t self:capability sys_admin;
25 allow vdagent_t self:fifo_file rw_fifo_file_perms;
26 allow vdagent_t self:unix_stream_socket create_stream_socket_perms;
28 manage_dirs_pattern(vdagent_t, vdagent_var_run_t, vdagent_var_run_t)
29 manage_files_pattern(vdagent_t, vdagent_var_run_t, vdagent_var_run_t)
30 manage_sock_files_pattern(vdagent_t, vdagent_var_run_t, vdagent_var_run_t)
31 files_pid_filetrans(vdagent_t, vdagent_var_run_t, { dir file sock_file })
33 manage_dirs_pattern(vdagent_t, vdagent_log_t, vdagent_log_t)
34 manage_files_pattern(vdagent_t, vdagent_log_t, vdagent_log_t)
35 logging_log_filetrans(vdagent_t, vdagent_log_t, { file })
37 dev_rw_input_dev(vdagent_t)
38 dev_read_sysfs(vdagent_t)
39 dev_dontaudit_write_mtrr(vdagent_t)
41 files_read_etc_files(vdagent_t)
43 term_use_virtio_console(vdagent_t)
45 miscfiles_read_localization(vdagent_t)
48 consolekit_dbus_chat(vdagent_t)
52 dbus_system_bus_client(vdagent_t)