Layer: contrib

Module: antivirus

Tunables Interfaces

Description:

SELinux policy for antivirus programs - amavis, clamd, freshclam and clamscan


Tunables:

antivirus_can_scan_system
Default value

false

Description

Allow antivirus programs to read non security files on a system

antivirus_use_jit
Default value

false

Description

Determine whether can antivirus programs use JIT compiler.

Return

Interfaces:

antivirus_admin( domain , role )
Summary

All of the rules required to administrate an antivirus programs environment

Parameters
Parameter:Description:
domain

Domain allowed access.

role

The role to be allowed to manage the clamav domain.

antivirus_append_log( domain )
Summary

Allow the specified domain to append to antivirus log files.

Parameters
Parameter:Description:
domain

Domain allowed access.

antivirus_domain_template( domain )
Summary

Creates types and rules for a basic antivirus domain.

Parameters
Parameter:Description:
domain

Prefix for the domain.

antivirus_domtrans( domain )
Summary

Execute a domain transition to run antivirus program.

Parameters
Parameter:Description:
domain

Domain allowed to transition.

antivirus_exec( domain )
Summary

Execute antivirus program without a transition.

Parameters
Parameter:Description:
domain

Domain allowed access.

antivirus_manage_db( domain )
Summary

Manage antivirus db content directories.

Parameters
Parameter:Description:
domain

Domain allowed access.

antivirus_manage_pid( domain )
Summary

Manage antivirus pid content.

Parameters
Parameter:Description:
domain

Domain allowed access.

antivirus_read_config( domain )
Summary

Read antivirus configuration files.

Parameters
Parameter:Description:
domain

Domain allowed access.

antivirus_read_db( domain )
Summary

Read antivirus db content directories.

Parameters
Parameter:Description:
domain

Domain allowed access.

antivirus_read_state_clamd( domain )
Summary

Read antivirus state files.

Parameters
Parameter:Description:
domain

Domain allowed access.

antivirus_rw_db( domain )
Summary

Read and write antivirus db content directories.

Parameters
Parameter:Description:
domain

Domain allowed access.

antivirus_search_db( domain )
Summary

Search antivirus db content directories.

Parameters
Parameter:Description:
domain

Domain allowed access.

antivirus_stream_connect( domain )
Summary

Connect to run antivirus program.

Parameters
Parameter:Description:
domain

Domain allowed access.

antivirus_systemctl( domain )
Summary

Execute antivirus server in the antivirus domain.

Parameters
Parameter:Description:
domain

Domain allowed to transition.

Return