## RPC port mapping service. ######################################## ## ## Execute portmap_helper in the helper domain. ## ## ## ## Domain allowed access. ## ## # interface(`portmap_domtrans_helper',` gen_require(` type portmap_helper_t, portmap_helper_exec_t; ') corecmd_search_bin($1) domain_auto_trans($1,portmap_helper_exec_t,portmap_helper_t) allow $1 portmap_helper_t:fd use; allow portmap_helper_t $1:fd use; allow portmap_helper_t $1:fifo_file rw_file_perms; allow portmap_helper_t $1:process sigchld; ') ######################################## ## ## Execute portmap helper in the helper domain, and ## allow the specified role the helper domain. ## Communicate with portmap. ## ## ## ## Domain allowed access. ## ## ## ## ## The role to be allowed the portmap domain. ## ## ## ## ## The type of the terminal allow the portmap domain to use. ## ## # interface(`portmap_run_helper',` gen_require(` type portmap_t, portmap_helper_t; ') portmap_domtrans_helper($1) role $2 types portmap_helper_t; allow portmap_helper_t $3:chr_file { getattr read write ioctl }; ') ######################################## ## ## Send UDP network traffic to portmap. (Deprecated) ## ## ## ## The type of the process performing this action. ## ## # interface(`portmap_udp_send',` refpolicywarn(`$0($*) has been deprecated.') ') ######################################## ## ## Send and receive UDP network traffic from portmap. (Deprecated) ## ## ## ## Domain allowed access. ## ## # interface(`portmap_udp_chat',` refpolicywarn(`$0($*) has been deprecated.') ') ######################################## ## ## Connect to portmap over a TCP socket (Deprecated) ## ## ## ## The type of the process performing this action. ## ## # interface(`portmap_tcp_connect',` refpolicywarn(`$0($*) has been deprecated.') ')