Layer: contrib

Module: ipa

Interfaces

Description:

Policy for IPA services.


Interfaces:

ipa_cert_filetrans_named_content( domain )
Summary

Create file ipasession.key in cert_t dir with ipa_cert_t type

Parameters
Parameter:Description:
domain

Domain allowed access.

ipa_custodia_domtrans( domain )
Summary

Execute ipa_custodia_exec_t in the ipa_custodia domain.

Parameters
Parameter:Description:
domain

Domain allowed to transition.

ipa_custodia_exec( domain )
Summary

Execute ipa_custodia in the caller domain.

Parameters
Parameter:Description:
domain

Domain allowed access.

ipa_custodia_stream_connect( domain )
Summary

Connect to ipa_custodia with a unix domain stream socket.

Parameters
Parameter:Description:
domain

Domain allowed access.

ipa_delete_tmp( domain )
Summary

Allow domain to manage ipa tmp files

Parameters
Parameter:Description:
domain

Domain allowed access.

ipa_domtrans_helper( domain )
Summary

Execute ipa-helper in the ipa_helper domain.

Parameters
Parameter:Description:
domain

Domain allowed to transition.

ipa_domtrans_otpd( domain )
Summary

Execute rtas_errd in the rtas_errd domin.

Parameters
Parameter:Description:
domain

Domain allowed to transition.

ipa_filetrans_named_content( domain )
Summary

Allow domain to create /tmp/ca.p12

Parameters
Parameter:Description:
domain

Domain allowed access.

ipa_filetrans_pid( domain , name )
Summary

Create specified objects in generic pid directories with the ipa pid file type.

Parameters
Parameter:Description:
domain

Domain allowed access.

name

The name of the object being created.

ipa_helper_noatsecure( domain )
Summary

Allow ipa_helper noatsecure

Parameters
Parameter:Description:
domain

Domain allowed access.

ipa_manage_lib( domain )
Summary

Allow domain to manage ipa lib files/dirs.

Parameters
Parameter:Description:
domain

Domain allowed access.

ipa_manage_log( domain )
Summary

Allow domain to manage ipa log files/dirs.

Parameters
Parameter:Description:
domain

Domain allowed access.

ipa_manage_pid_files( domain )
Summary

Allow domain to manage ipa run files/dirs.

Parameters
Parameter:Description:
domain

Domain allowed access.

ipa_named_filetrans_log_dir( domain )
Summary

Create log files with a named file type transition.

Parameters
Parameter:Description:
domain

Domain allowed access.

ipa_read_lib( domain )
Summary

Allow domain to manage ipa lib files/dirs.

Parameters
Parameter:Description:
domain

Domain allowed access.

ipa_read_tmp( domain )
Summary

Allow domain to read ipa tmp files/dirs.

Parameters
Parameter:Description:
domain

Domain allowed access.

ipa_run_helper( domain , role )
Summary

Execute ipa-helper in the ipa_helper domain.

Parameters
Parameter:Description:
domain

Domain allowed to transition.

role

Role allowed access.

ipa_search_lib( domain )
Summary

Allow domain to manage ipa lib files/dirs.

Parameters
Parameter:Description:
domain

Domain allowed access.

ipa_stream_connect_ods_exporter( domain )
Summary

Connect to ipa-ods-exporter over a unix stream socket.

Parameters
Parameter:Description:
domain

Domain allowed access.

ipa_stream_connect_otpd( domain )
Summary

Connect to ipa-otpd over a unix stream socket.

Parameters
Parameter:Description:
domain

Domain allowed access.

Return