## Aide filesystem integrity checker ######################################## ## ## Execute aide in the aide domain ## ## ## ## The type of the process performing this action. ## ## # interface(`aide_domtrans',` gen_require(` type aide_t, aide_exec_t; ') corecmd_search_sbin($1) domain_auto_trans($1,aide_exec_t,aide_t) allow $1 aide_t:fd use; allow aide_t $1:fd use; allow aide_t $1:fifo_file rw_file_perms; allow aide_t $1:process sigchld; ') ######################################## ## ## Execute aide programs in the AIDE domain. ## ## ## ## Domain allowed access. ## ## ## ## ## The role to allow the AIDE domain. ## ## ## ## ## The type of the terminal allow the AIDE domain to use. ## ## # interface(`aide_run',` gen_require(` type aide_t; ') aide_domtrans($1) role $2 types aide_t; allow aide_t $3:chr_file rw_file_perms; ')