1 policy_module(ts3, 0.1.21)
3 # File context for the executable process
13 init_daemon_domain(ts3_t, ts3_exec_t)
15 corenet_udp_sendrecv_generic_port(ts3_t)
16 corenet_udp_bind_generic_port(ts3_t)
17 corenet_udp_bind_generic_node(ts3_t)
18 corenet_tcp_sendrecv_generic_port(ts3_t)
19 corenet_tcp_bind_generic_port(ts3_t)
20 corenet_tcp_bind_generic_node(ts3_t)
22 allow ts3_t self:tcp_socket { create_stream_socket_perms connected_stream_socket_perms };
24 allow ts3_t ts3_ro_t:dir list_dir_perms;
25 allow ts3_t ts3_ro_t:file read_file_perms;
27 manage_files_pattern(ts3_t, ts3_rw_t, ts3_rw_t)
28 manage_dirs_pattern(ts3_t, ts3_rw_t, ts3_rw_t)
29 setattr_files_pattern(ts3_t, ts3_rw_t, ts3_rw_t)
31 sysnet_dns_name_resolve(ts3_t)
33 # Needed to load shared libraries
34 allow ts3_t ts3_exec_t:file execmod;
38 fs_getattr_tmpfs(ts3_t)
39 fs_manage_tmpfs_files(ts3_t)