|
Chris PeBenito |
25d796 |
policy_module(staff, 2.1.2)
|
|
Chris PeBenito |
e9c6cd |
|
|
Chris PeBenito |
e9c6cd |
########################################
|
|
Chris PeBenito |
e9c6cd |
#
|
|
Chris PeBenito |
e9c6cd |
# Declarations
|
|
Chris PeBenito |
e9c6cd |
#
|
|
Chris PeBenito |
e9c6cd |
|
|
Chris PeBenito |
e9c6cd |
role staff_r;
|
|
Chris PeBenito |
e9c6cd |
|
|
Chris PeBenito |
e9c6cd |
userdom_unpriv_user_template(staff)
|
|
Chris PeBenito |
e9c6cd |
|
|
Chris PeBenito |
e9c6cd |
########################################
|
|
Chris PeBenito |
e9c6cd |
#
|
|
Chris PeBenito |
e9c6cd |
# Local policy
|
|
Chris PeBenito |
e9c6cd |
#
|
|
Chris PeBenito |
e9c6cd |
|
|
Chris PeBenito |
e9c6cd |
optional_policy(`
|
|
Chris PeBenito |
296273 |
apache_role(staff_r, staff_t)
|
|
Chris PeBenito |
e9c6cd |
')
|
|
Chris PeBenito |
e9c6cd |
|
|
Chris PeBenito |
e9c6cd |
optional_policy(`
|
|
Chris PeBenito |
296273 |
auditadm_role_change(staff_r)
|
|
Chris PeBenito |
e9c6cd |
')
|
|
Chris PeBenito |
e9c6cd |
|
|
Chris PeBenito |
296273 |
optional_policy(`
|
|
Chris PeBenito |
c62f1b |
dbadm_role_change(staff_r)
|
|
Chris PeBenito |
c62f1b |
')
|
|
Chris PeBenito |
c62f1b |
|
|
Chris PeBenito |
c62f1b |
optional_policy(`
|
|
Dominick Grift |
941e3d |
oident_manage_user_content(staff_t)
|
|
Dominick Grift |
941e3d |
oident_relabel_user_content(staff_t)
|
|
Dominick Grift |
941e3d |
')
|
|
Dominick Grift |
941e3d |
|
|
Dominick Grift |
941e3d |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
postgresql_role(staff_r, staff_t)
|
|
Chris PeBenito |
296273 |
')
|
|
Chris PeBenito |
296273 |
|
|
Chris PeBenito |
296273 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
secadm_role_change(staff_r)
|
|
Chris PeBenito |
296273 |
')
|
|
Chris PeBenito |
296273 |
|
|
Chris PeBenito |
296273 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
ssh_role_template(staff, staff_r, staff_t)
|
|
Chris PeBenito |
296273 |
')
|
|
Chris PeBenito |
296273 |
|
|
Chris PeBenito |
296273 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
sudo_role_template(staff, staff_r, staff_t)
|
|
Chris PeBenito |
296273 |
')
|
|
Chris PeBenito |
296273 |
|
|
Chris PeBenito |
296273 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
sysadm_role_change(staff_r)
|
|
Jeremy Solt |
c87e15 |
userdom_dontaudit_use_user_terminals(staff_t)
|
|
Chris PeBenito |
296273 |
')
|
|
Chris PeBenito |
296273 |
|
|
Chris PeBenito |
296273 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
xserver_role(staff_r, staff_t)
|
|
Chris PeBenito |
296273 |
')
|
|
Chris PeBenito |
296273 |
|
|
Jeremy Solt |
c87e15 |
ifndef(`distro_redhat',`
|
|
Jeremy Solt |
c87e15 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
auth_role(staff_r, staff_t)
|
|
Jeremy Solt |
c87e15 |
')
|
|
Chris PeBenito |
296273 |
|
|
Jeremy Solt |
c87e15 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
bluetooth_role(staff_r, staff_t)
|
|
Jeremy Solt |
c87e15 |
')
|
|
Chris PeBenito |
296273 |
|
|
Jeremy Solt |
c87e15 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
cdrecord_role(staff_r, staff_t)
|
|
Jeremy Solt |
c87e15 |
')
|
|
Chris PeBenito |
296273 |
|
|
Jeremy Solt |
c87e15 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
cron_role(staff_r, staff_t)
|
|
Jeremy Solt |
c87e15 |
')
|
|
Chris PeBenito |
296273 |
|
|
Jeremy Solt |
c87e15 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
dbus_role_template(staff, staff_r, staff_t)
|
|
Jeremy Solt |
c87e15 |
')
|
|
Chris PeBenito |
296273 |
|
|
Jeremy Solt |
c87e15 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
evolution_role(staff_r, staff_t)
|
|
Jeremy Solt |
c87e15 |
')
|
|
Chris PeBenito |
296273 |
|
|
Jeremy Solt |
c87e15 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
games_role(staff_r, staff_t)
|
|
Jeremy Solt |
c87e15 |
')
|
|
Chris PeBenito |
296273 |
|
|
Jeremy Solt |
c87e15 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
gift_role(staff_r, staff_t)
|
|
Jeremy Solt |
c87e15 |
')
|
|
Chris PeBenito |
296273 |
|
|
Jeremy Solt |
c87e15 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
gnome_role(staff_r, staff_t)
|
|
Jeremy Solt |
c87e15 |
')
|
|
Chris PeBenito |
296273 |
|
|
Jeremy Solt |
c87e15 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
gpg_role(staff_r, staff_t)
|
|
Jeremy Solt |
c87e15 |
')
|
|
Chris PeBenito |
296273 |
|
|
Jeremy Solt |
c87e15 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
irc_role(staff_r, staff_t)
|
|
Jeremy Solt |
c87e15 |
')
|
|
Chris PeBenito |
296273 |
|
|
Jeremy Solt |
c87e15 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
java_role(staff_r, staff_t)
|
|
Jeremy Solt |
c87e15 |
')
|
|
Chris PeBenito |
22a287 |
|
|
Jeremy Solt |
c87e15 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
lockdev_role(staff_r, staff_t)
|
|
Jeremy Solt |
c87e15 |
')
|
|
Chris PeBenito |
296273 |
|
|
Jeremy Solt |
c87e15 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
lpd_role(staff_r, staff_t)
|
|
Jeremy Solt |
c87e15 |
')
|
|
Chris PeBenito |
296273 |
|
|
Jeremy Solt |
c87e15 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
mozilla_role(staff_r, staff_t)
|
|
Jeremy Solt |
c87e15 |
')
|
|
Chris PeBenito |
296273 |
|
|
Jeremy Solt |
c87e15 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
mplayer_role(staff_r, staff_t)
|
|
Jeremy Solt |
c87e15 |
')
|
|
Chris PeBenito |
296273 |
|
|
Jeremy Solt |
c87e15 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
mta_role(staff_r, staff_t)
|
|
Jeremy Solt |
c87e15 |
')
|
|
Chris PeBenito |
296273 |
|
|
Jeremy Solt |
c87e15 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
pyzor_role(staff_r, staff_t)
|
|
Jeremy Solt |
c87e15 |
')
|
|
Chris PeBenito |
296273 |
|
|
Jeremy Solt |
c87e15 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
razor_role(staff_r, staff_t)
|
|
Jeremy Solt |
c87e15 |
')
|
|
Chris PeBenito |
296273 |
|
|
Jeremy Solt |
c87e15 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
rssh_role(staff_r, staff_t)
|
|
Jeremy Solt |
c87e15 |
')
|
|
Chris PeBenito |
296273 |
|
|
Jeremy Solt |
c87e15 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
screen_role_template(staff, staff_r, staff_t)
|
|
Jeremy Solt |
c87e15 |
')
|
|
Chris PeBenito |
296273 |
|
|
Jeremy Solt |
c87e15 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
spamassassin_role(staff_r, staff_t)
|
|
Jeremy Solt |
c87e15 |
')
|
|
Chris PeBenito |
296273 |
|
|
Jeremy Solt |
c87e15 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
su_role_template(staff, staff_r, staff_t)
|
|
Jeremy Solt |
c87e15 |
')
|
|
Chris PeBenito |
296273 |
|
|
Jeremy Solt |
c87e15 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
thunderbird_role(staff_r, staff_t)
|
|
Jeremy Solt |
c87e15 |
')
|
|
Jeremy Solt |
c87e15 |
|
|
Jeremy Solt |
c87e15 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
tvtime_role(staff_r, staff_t)
|
|
Jeremy Solt |
c87e15 |
')
|
|
Jeremy Solt |
c87e15 |
|
|
Jeremy Solt |
c87e15 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
uml_role(staff_r, staff_t)
|
|
Jeremy Solt |
c87e15 |
')
|
|
Jeremy Solt |
c87e15 |
|
|
Jeremy Solt |
c87e15 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
userhelper_role_template(staff, staff_r, staff_t)
|
|
Jeremy Solt |
c87e15 |
')
|
|
Jeremy Solt |
c87e15 |
|
|
Jeremy Solt |
c87e15 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
vmware_role(staff_r, staff_t)
|
|
Jeremy Solt |
c87e15 |
')
|
|
Jeremy Solt |
c87e15 |
|
|
Jeremy Solt |
c87e15 |
optional_policy(`
|
|
Jeremy Solt |
c87e15 |
wireshark_role(staff_r, staff_t)
|
|
Jeremy Solt |
c87e15 |
')
|
|
Chris PeBenito |
296273 |
')
|