Policy for the RPM package manager.
All of the rules required to administrate an rpm environment.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
role |
Role allowed access. |
Allow the specified domain to append to rpm log files.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Allow the specified domain to append to rpm tmp files.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Send and receive messages from rpm over dbus.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Execute debuginfo_install programs in the rpm domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed to transition. |
Delete the RPM package database.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Execute rpm programs in the rpm domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed to transition. |
Execute rpm_script programs in the rpm_script domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed to transition. |
Do not audit attempts to send and receive messages from rpm over dbus.
Parameter: | Description: |
---|---|
domain |
Domain to not audit. |
dontaudit read and write an leaked file descriptors
Parameter: | Description: |
---|---|
domain |
Domain to not audit. |
Do not audit attempts to create, read, write, and delete the RPM package database.
Parameter: | Description: |
---|---|
domain |
Domain to not audit. |
Do not audit attempts to create, read,the RPM package database.
Parameter: | Description: |
---|---|
domain |
Domain to not audit. |
Make rpm_exec_t an entry point for the specified domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Execute the rpm client in the caller domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Send a null signal to rpm.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Create, read, write, and delete the RPM package database.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Create, read, write, and delete the RPM package database.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Create, read, write, and delete the RPM log.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Create, read, write, and delete rpm pid files.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Create, read, write, and delete RPM script temporary files.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Create, read, write, and delete RPM temporary files.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Create rpm logs with an correct label.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Create files in /var/run with the rpm pid file type.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Read the RPM cache.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Read the RPM package database.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Create, read, write, and delete the RPM log.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Read rpm pid files.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Read from an unnamed RPM pipe.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Read RPM script temporary files.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Read rpm temporary files.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Execute RPM programs in the RPM domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed to transition. |
role |
The role to allow the RPM domain. |
Read and write an unnamed RPM pipe.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Read and write an unnamed RPM script pipe.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Send and receive messages from rpm_script over dbus.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Search RPM log directory.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Send a null signal to rpm.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Allow application to transition to rpm_script domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
role |
Role allowed access. |
Inherit and use file descriptors from RPM.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Inherit and use file descriptors from RPM scripts.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |