Policy for system libraries.
Create an object in lib directories, with the shared libraries type using a type transition. (Deprecated)
Create an object in lib directories, with the shared libraries type using a type transition. (Deprecated)
lib_filetrans_shared_lib() should be used instead.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
object |
The object class of the object being created. |
Create an object in lib directories, with the shared libraries type using a type transition.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
object |
The object class of the object being created. |
Delete generic symlinks in library directories.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Execute ldconfig in the ldconfig domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed to transition. |
dontaudit attempts to setattr on library files
Parameter: | Description: |
---|---|
domain |
Domain to not audit. |
Do not audit attempts to write to library directories.
Do not audit attempts to write to library directories. Typically this is used to quiet attempts to recompile python byte code.
Parameter: | Description: |
---|---|
domain |
Domain to not audit. |
Execute the dynamic link/loader in the caller's domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Execute ldconfig in the caller domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Execute library scripts in the caller domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Transition to lib named content
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Make ldconfig_exec_t entrypoint for the specified domain.
Parameter: | Description: |
---|---|
domain |
The domain for which bin_t is an entrypoint. |
Use the dynamic link/loader for automatic loading of shared libraries with legacy support.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Load and execute functions from shared libraries, with legacy support.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Create, read, write, and delete the dynamic link/loader.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Create, read, write, and delete library directories.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Create, read, write, and delete generic files in library directories.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Create, read, write, and delete shared libraries.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Read files in the library directories, such as static libraries.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Relabel to and from the type used for the dynamic link/loader.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Relabel to and from the type used for generic lib files.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Relabel to and from the type used for shared libraries.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Relabel files to the type used in library directories.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Execute ldconfig in the ldconfig domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed to transition. |
role |
The role to allow the ldconfig domain. |
Modify the dynamic link/loader's cached listing of shared libraries.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Search library directories.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Use the dynamic link/loader for automatic loading of shared libraries.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Load and execute functions from generic lib files as shared libraries.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Load and execute functions from shared libraries.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |