Chris PeBenito 0fbfa54
#DESC MonopD - Monopoly Daemon
Chris PeBenito 0fbfa54
#
Chris PeBenito 0fbfa54
# Author: Torsten Knodt <tk-selinux@datas-world.de>
Chris PeBenito 0fbfa54
# based on the dhcpd_t policy from:
Chris PeBenito 0fbfa54
#          Russell Coker <russell@coker.com.au>
Chris PeBenito 0fbfa54
#
Chris PeBenito 0fbfa54
Chris PeBenito 0fbfa54
#################################
Chris PeBenito 0fbfa54
#
Chris PeBenito 0fbfa54
# Rules for the monopd_t domain.
Chris PeBenito 0fbfa54
#
Chris PeBenito 0fbfa54
daemon_domain(monopd)
Chris PeBenito 2705f9a
etc_domain(monopd)
Chris PeBenito 2705f9a
typealias monopd_etc_t alias etc_monopd_t;
Chris PeBenito 0fbfa54
Chris PeBenito 2705f9a
type monopd_share_t, file_type, sysadmfile;
Chris PeBenito 2705f9a
typealias monopd_share_t alias share_monopd_t;
Chris PeBenito 0fbfa54
Chris PeBenito 0fbfa54
# Use the network.
Chris PeBenito 0fbfa54
can_network_server(monopd_t)
Chris PeBenito 0fbfa54
can_ypbind(monopd_t)
Chris PeBenito 0fbfa54
Chris PeBenito 0fbfa54
allow monopd_t monopd_port_t:tcp_socket name_bind;
Chris PeBenito 0fbfa54
Chris PeBenito 0fbfa54
r_dir_file(monopd_t,share_monopd_t)
Chris PeBenito 0fbfa54
Chris PeBenito 0fbfa54
allow monopd_t self:unix_dgram_socket create_socket_perms;
Chris PeBenito 0fbfa54
allow monopd_t self:unix_stream_socket create_socket_perms;
Chris PeBenito 0fbfa54
Chris PeBenito 0fbfa54
r_dir_file(monopd_t, etc_t)