Lines 11-16
type bitcoin_var_run_t;
Link Here
|
11 |
type bitcoin_log_t; |
11 |
type bitcoin_log_t; |
12 |
type bitcoin_tmp_t; |
12 |
type bitcoin_tmp_t; |
13 |
|
13 |
|
|
|
14 |
files_type(bitcoin_var_lib_t) |
15 |
files_type(bitcoin_var_run_t) |
16 |
files_type(bitcoin_log_t) |
17 |
files_type(bitcoin_tmp_t) |
18 |
files_type(bitcoin_etc_t) |
19 |
|
14 |
domain_type(bitcoin_t) |
20 |
domain_type(bitcoin_t) |
15 |
init_daemon_domain(bitcoin_t, bitcoin_exec_t) |
21 |
init_daemon_domain(bitcoin_t, bitcoin_exec_t) |
16 |
init_script_file(bitcoin_initrc_exec_t) |
22 |
init_script_file(bitcoin_initrc_exec_t) |
Lines 26-37
allow bitcoin_t bitcoin_tmp_t:file { create_file_perms write_file_perms };
Link Here
|
26 |
files_tmp_filetrans(bitcoin_t, bitcoin_tmp_t, file) |
32 |
files_tmp_filetrans(bitcoin_t, bitcoin_tmp_t, file) |
27 |
|
33 |
|
28 |
|
34 |
|
|
|
35 |
allow bitcoin_t self:process signal_perms; |
29 |
allow bitcoin_t bitcoin_var_lib_t:file { read write append create getattr open unlink rename lock }; |
36 |
allow bitcoin_t bitcoin_var_lib_t:file { read write append create getattr open unlink rename lock }; |
30 |
allow bitcoin_t bitcoin_var_lib_t:dir { create write rmdir read open add_name remove_name search getattr }; |
37 |
allow bitcoin_t bitcoin_var_lib_t:dir { create write rmdir read open add_name remove_name search getattr }; |
31 |
allow bitcoin_t bitcoin_var_lib_t:lnk_file read; |
38 |
allow bitcoin_t bitcoin_etc_t:file read_file_perms; |
32 |
allow bitcoin_t bitcoin_etc_t:dir { getattr search open }; |
39 |
|
33 |
allow bitcoin_t bitcoin_etc_t:file { read getattr open }; |
40 |
read_lnk_files_pattern(bitcoin_t, bitcoin_etc_t, bitcoin_etc_t); |
|
|
41 |
read_files_pattern(bitcoin_t, bitcoin_etc_t, bitcoin_etc_t); |
42 |
list_dirs_pattern(bitcoin_t, bitcoin_etc_t, bitcoin_etc_t); |
34 |
|
43 |
|
|
|
44 |
kernel_read_system_state(bitcoin_t) |
35 |
kernel_read_vm_sysctls(bitcoin_t) |
45 |
kernel_read_vm_sysctls(bitcoin_t) |
36 |
|
46 |
|
37 |
dev_read_sysfs(bitcoin_t) |
47 |
dev_read_sysfs(bitcoin_t) |