1 policy_module(backup, 1.5.0)
3 ########################################
11 domain_entry_file(backup_t, backup_exec_t)
12 role system_r types backup_t;
15 files_type(backup_store_t)
17 ########################################
22 allow backup_t self:capability dac_override;
23 allow backup_t self:process signal;
24 allow backup_t self:fifo_file rw_fifo_file_perms;
25 allow backup_t self:tcp_socket create_socket_perms;
26 allow backup_t self:udp_socket create_socket_perms;
28 allow backup_t backup_store_t:file setattr;
29 manage_files_pattern(backup_t, backup_store_t, backup_store_t)
30 rw_files_pattern(backup_t, backup_store_t, backup_store_t)
31 read_lnk_files_pattern(backup_t, backup_store_t, backup_store_t)
33 kernel_read_system_state(backup_t)
34 kernel_read_kernel_sysctls(backup_t)
36 corecmd_exec_bin(backup_t)
37 corecmd_exec_shell(backup_t)
39 corenet_all_recvfrom_unlabeled(backup_t)
40 corenet_all_recvfrom_netlabel(backup_t)
41 corenet_tcp_sendrecv_generic_if(backup_t)
42 corenet_udp_sendrecv_generic_if(backup_t)
43 corenet_raw_sendrecv_generic_if(backup_t)
44 corenet_tcp_sendrecv_generic_node(backup_t)
45 corenet_udp_sendrecv_generic_node(backup_t)
46 corenet_raw_sendrecv_generic_node(backup_t)
47 corenet_tcp_sendrecv_all_ports(backup_t)
48 corenet_udp_sendrecv_all_ports(backup_t)
49 corenet_tcp_connect_all_ports(backup_t)
50 corenet_sendrecv_all_client_packets(backup_t)
52 dev_getattr_all_blk_files(backup_t)
53 dev_getattr_all_chr_files(backup_t)
55 dev_read_urand(backup_t)
57 domain_use_interactive_fds(backup_t)
59 files_read_all_files(backup_t)
60 files_read_all_symlinks(backup_t)
61 files_getattr_all_pipes(backup_t)
62 files_getattr_all_sockets(backup_t)
64 fs_getattr_xattr_fs(backup_t)
67 auth_read_shadow(backup_t)
69 logging_send_syslog_msg(backup_t)
71 sysnet_read_config(backup_t)
73 userdom_use_inherited_user_terminals(backup_t)
76 cron_system_entry(backup_t, backup_exec_t)
80 hostname_exec(backup_t)
84 nis_use_ypbind(backup_t)