Policy for mount.
Execute mount in the mount domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed to transition. |
Transition to ecryptmount.
Parameter: | Description: |
---|---|
domain |
Domain allowed to transition. |
Execute fusermount in the mount domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Execute a domain transition to run showmount.
Parameter: | Description: |
---|---|
domain |
Domain allowed to transition. |
Execute mount in the unconfined mount domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed to transition. |
dontaudit Execute fusermount.
Parameter: | Description: |
---|---|
domain |
Domain to not audit. |
Do not audit attemps to write mount PID files.
Parameter: | Description: |
---|---|
domain |
Domain to not audit. |
Allow mount programs to be an entrypoint for the specified domain.
Parameter: | Description: |
---|---|
domain |
The domain for which mount programs is an entrypoint. |
Execute mount in the caller domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Execute fusermount.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Read the mount tmp directory
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Manage mount PID files.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Read mount PID files.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Execute mount in the mount domain, and allow the specified role the mount domain, and use the caller's terminal.
Parameter: | Description: |
---|---|
domain |
Domain allowed to transition. |
role |
Role allowed access. |
Execute fusermount in the mount domain, and allow the specified role the mount domain, and use the caller's terminal.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
role |
The role to be allowed the mount domain. |
Execute showmount in the showmount domain, and allow the specified role the showmount domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed access |
role |
The role to be allowed the showmount domain. |
Execute mount in the unconfined mount domain, and allow the specified role the unconfined mount domain, and use the caller's terminal.
Parameter: | Description: |
---|---|
domain |
Domain allowed to transition. |
role |
Role allowed access. |
Read/write mount PID files.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Allow the mount domain to send nfs requests for mounting network drives
Allow the mount domain to send nfs requests for mounting network drives
This interface has been deprecated as these rules were a side effect of leaked mount file descriptors. This interface has no effect.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Send a generic signal to mount.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Use file descriptors for mount.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |