Policy for managing user accounts.
Check access to the groupadd executable.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
Check access to the passwd executable
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
Check access to the useradd executable.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
Check if the passwd binary is executable.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
Check if the useradd binaries are executable.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
Execute password admin functions in the admin passwd domain.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed to transition. |
Execute chfn in the chfn domain.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed to transition. |
Execute groupadd in the groupadd domain.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed to transition. |
Execute passwd in the passwd domain.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed to transition. |
Execute useradd in the useradd domain.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed to transition. |
Do not audit attempts to use useradd fds.
| Parameter: | Description: |
|---|---|
| domain |
Domain to not audit. |
Send sigkills to passwd.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
Read the crack database.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
Execute passwd admin functions in the admin passwd domain, and allow the specified role the admin passwd domain.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed to transition. |
| role |
Role allowed access. |
Execute chfn in the chfn domain, and allow the specified role the chfn domain.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed to transition. |
| role |
Role allowed access. |
Execute groupadd in the groupadd domain, and allow the specified role the groupadd domain.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed to transition. |
| role |
Role allowed access. |
Execute passwd in the passwd domain, and allow the specified role the passwd domain.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed to transition. |
| role |
Role allowed access. |
Execute useradd in the useradd domain, and allow the specified role the useradd domain.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed to transition. |
| role |
Role allowed access. |