Karl MacMillan 660bf7
<html>
Karl MacMillan 660bf7
<head>
Karl MacMillan 660bf7
<title>
Karl MacMillan 660bf7
 Security Enhanced Linux Reference Policy
Karl MacMillan 660bf7
 </title>
Karl MacMillan 660bf7
<style type="text/css" media="all">@import "style.css";</style>
Karl MacMillan 660bf7
</head>
Karl MacMillan 660bf7
<body>
Karl MacMillan 660bf7
Karl MacMillan 660bf7
Karl MacMillan 660bf7
	
Karl MacMillan 660bf7
		
Karl MacMillan 660bf7
		admin
Karl MacMillan 660bf7
		
Karl MacMillan 660bf7
		
Karl MacMillan 660bf7
		
Karl MacMillan 660bf7
	
Chris PeBenito e3a8e3
		
Chris PeBenito e3a8e3
		apps
Chris PeBenito e3a8e3
		
Chris PeBenito e3a8e3
		
Chris PeBenito e3a8e3
		
Chris PeBenito e3a8e3
	
Karl MacMillan 660bf7
		
Karl MacMillan 660bf7
		kernel
Karl MacMillan 660bf7
		
Karl MacMillan 660bf7
		
Karl MacMillan 660bf7
		
Karl MacMillan 660bf7
	
Karl MacMillan 660bf7
		
Karl MacMillan 660bf7
		services
Karl MacMillan 660bf7
		
Karl MacMillan 660bf7
		
Chris PeBenito 862a1e
			   - 
Chris PeBenito 862a1e
			apache
Chris PeBenito 862a1e
		
Chris PeBenito 862a1e
			   - 
Chris PeBenito 862a1e
			apm
Chris PeBenito 862a1e
		
Chris PeBenito 862a1e
			   - 
Chris PeBenito 862a1e
			arpwatch
Chris PeBenito 862a1e
		
Chris PeBenito c2ecf0
			   - 
Chris PeBenito c2ecf0
			bind
Chris PeBenito c2ecf0
		
Chris PeBenito 862a1e
			   - 
Chris PeBenito 862a1e
			bluetooth
Chris PeBenito 862a1e
		
Chris PeBenito e376ad
			   - 
Chris PeBenito e376ad
			comsat
Chris PeBenito e376ad
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			cpucontrol
Chris PeBenito 44a4c2
		
Chris PeBenito e3a8e3
			   - 
Chris PeBenito e3a8e3
			cron
Chris PeBenito e3a8e3
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			cvs
Chris PeBenito 44a4c2
		
Chris PeBenito e376ad
			   - 
Chris PeBenito e376ad
			dbus
Chris PeBenito e376ad
		
Chris PeBenito e376ad
			   - 
Chris PeBenito e376ad
			dhcp
Chris PeBenito e376ad
		
Chris PeBenito e376ad
			   - 
Chris PeBenito e376ad
			dictd
Chris PeBenito e376ad
		
Chris PeBenito 862a1e
			   - 
Chris PeBenito 862a1e
			finger
Chris PeBenito 862a1e
		
Chris PeBenito 862a1e
			   - 
Chris PeBenito 862a1e
			ftp
Chris PeBenito 862a1e
		
Chris PeBenito c2ecf0
			   - 
Chris PeBenito c2ecf0
			gpm
Chris PeBenito c2ecf0
		
Chris PeBenito e376ad
			   - 
Chris PeBenito e376ad
			hal
Chris PeBenito e376ad
		
Chris PeBenito c2ecf0
			   - 
Chris PeBenito c2ecf0
			howl
Chris PeBenito c2ecf0
		
Chris PeBenito e3a8e3
			   - 
Chris PeBenito e3a8e3
			inetd
Chris PeBenito e3a8e3
		
Chris PeBenito e376ad
			   - 
Chris PeBenito e376ad
			inn
Chris PeBenito e376ad
		
Chris PeBenito e3a8e3
			   - 
Chris PeBenito e3a8e3
			kerberos
Chris PeBenito e3a8e3
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			ktalk
Chris PeBenito 44a4c2
		
Chris PeBenito c2ecf0
			   - 
Chris PeBenito c2ecf0
			ldap
Chris PeBenito c2ecf0
		
Chris PeBenito 862a1e
			   - 
Chris PeBenito 862a1e
			mailman
Chris PeBenito 862a1e
		
Karl MacMillan 660bf7
			   - 
Karl MacMillan 660bf7
			mta
Karl MacMillan 660bf7
		
Chris PeBenito c2ecf0
			   - 
Chris PeBenito c2ecf0
			mysql
Chris PeBenito c2ecf0
		
Chris PeBenito e3a8e3
			   - 
Chris PeBenito e3a8e3
			nis
Chris PeBenito e3a8e3
		
Chris PeBenito 8b1125
			   - 
Chris PeBenito 8b1125
			nscd
Chris PeBenito 8b1125
		
Chris PeBenito e376ad
			   - 
Chris PeBenito e376ad
			ntp
Chris PeBenito e376ad
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			portmap
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			postgresql
Chris PeBenito 44a4c2
		
Chris PeBenito 862a1e
			   - 
Chris PeBenito 862a1e
			ppp
Chris PeBenito 862a1e
		
Chris PeBenito c2ecf0
			   - 
Chris PeBenito c2ecf0
			privoxy
Chris PeBenito c2ecf0
		
Chris PeBenito 862a1e
			   - 
Chris PeBenito 862a1e
			radvd
Chris PeBenito 862a1e
		
Karl MacMillan 660bf7
			   - 
Karl MacMillan 660bf7
			remotelogin
Karl MacMillan 660bf7
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			rlogin
Chris PeBenito 44a4c2
		
Chris PeBenito c2ecf0
			   - 
Chris PeBenito c2ecf0
			rshd
Chris PeBenito c2ecf0
		
Chris PeBenito c2ecf0
			   - 
Chris PeBenito c2ecf0
			rsync
Chris PeBenito c2ecf0
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			samba
Chris PeBenito 44a4c2
		
Chris PeBenito 862a1e
			   - 
Chris PeBenito 862a1e
			sasl
Chris PeBenito 862a1e
		
Karl MacMillan 660bf7
			   - 
Karl MacMillan 660bf7
			sendmail
Karl MacMillan 660bf7
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			snmp
Chris PeBenito 44a4c2
		
Chris PeBenito e376ad
			   - 
Chris PeBenito e376ad
			squid
Chris PeBenito e376ad
		
Chris PeBenito e3a8e3
			   - 
Chris PeBenito e3a8e3
			ssh
Chris PeBenito e3a8e3
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			stunnel
Chris PeBenito 44a4c2
		
Chris PeBenito c2ecf0
			   - 
Chris PeBenito c2ecf0
			tcpd
Chris PeBenito c2ecf0
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			telnet
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			tftp
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			uucp
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			zebra
Chris PeBenito 44a4c2
		
Karl MacMillan 660bf7
		
Karl MacMillan 660bf7
	
Karl MacMillan 660bf7
		
Karl MacMillan 660bf7
		system
Karl MacMillan 660bf7
		
Karl MacMillan 660bf7
		
Karl MacMillan 660bf7
		
Karl MacMillan 660bf7
	
Karl MacMillan 660bf7
	

Chris PeBenito 8b1125
	* Global Booleans 
Chris PeBenito 8b1125
	

Chris PeBenito 8b1125
	* Global Tunables 
Chris PeBenito 8b1125
	


Chris PeBenito 8b1125
	* Layer Index
Chris PeBenito e3a8e3
	

Chris PeBenito 8b1125
	* Interface Index
Chris PeBenito 8b1125
	

Chris PeBenito 8b1125
	* Template Index
Karl MacMillan 660bf7
Karl MacMillan 660bf7
Karl MacMillan 660bf7
Karl MacMillan 660bf7
Karl MacMillan 660bf7

Layer: services

Karl MacMillan 660bf7
Chris PeBenito 8b1125

Chris PeBenito 8b1125
	Policy modules for system services, like cron, and network services,
Chris PeBenito 8b1125
	like sshd.
Chris PeBenito 8b1125


Chris PeBenito 8b1125
Chris PeBenito 8b1125
Karl MacMillan 660bf7
Karl MacMillan 660bf7
Module:Description:
Karl MacMillan 660bf7
	
Karl MacMillan 660bf7
		
Karl MacMillan 660bf7
		
Karl MacMillan 660bf7
	
Karl MacMillan 660bf7
		
Karl MacMillan 660bf7
		
Karl MacMillan 660bf7
	
Karl MacMillan 660bf7
		
Chris PeBenito e3a8e3
		
Chris PeBenito e3a8e3
	
Chris PeBenito e3a8e3
		
Chris PeBenito e3a8e3
			
Chris PeBenito 862a1e
			
Chris PeBenito 862a1e
			apache
Chris PeBenito 862a1e
			

Apache web server

Chris PeBenito 862a1e
		
Chris PeBenito 862a1e
			
Chris PeBenito 862a1e
			
Chris PeBenito 862a1e
			apm
Chris PeBenito 862a1e
			

Advanced power management daemon

Chris PeBenito 862a1e
		
Chris PeBenito 862a1e
			
Chris PeBenito 862a1e
			
Chris PeBenito 862a1e
			arpwatch
Chris PeBenito 862a1e
			

Ethernet activity monitor.

Chris PeBenito 862a1e
		
Chris PeBenito 862a1e
			
Chris PeBenito c2ecf0
			
Chris PeBenito c2ecf0
			bind
Chris PeBenito c2ecf0
			

Berkeley internet name domain DNS server.

Chris PeBenito c2ecf0
		
Chris PeBenito c2ecf0
			
Chris PeBenito 862a1e
			
Chris PeBenito 862a1e
			bluetooth
Chris PeBenito 862a1e
			

Bluetooth tools and system services.

Chris PeBenito 862a1e
		
Chris PeBenito 862a1e
			
Chris PeBenito e376ad
			
Chris PeBenito e376ad
			comsat
Chris PeBenito e376ad
			

Comsat, a biff server.

Chris PeBenito e376ad
		
Chris PeBenito e376ad
			
Chris PeBenito 44a4c2
			
Chris PeBenito 44a4c2
			cpucontrol
Chris PeBenito 44a4c2
			

Services for loading CPU microcode and CPU frequency scaling.

Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			
Chris PeBenito e3a8e3
			
Chris PeBenito e3a8e3
			cron
Chris PeBenito e3a8e3
			

Periodic execution of scheduled commands.

Chris PeBenito e3a8e3
		
Chris PeBenito e3a8e3
			
Chris PeBenito 44a4c2
			
Chris PeBenito 44a4c2
			cvs
Chris PeBenito 44a4c2
			

Concurrent versions system

Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			
Chris PeBenito e376ad
			
Chris PeBenito e376ad
			dbus
Chris PeBenito e376ad
			

Desktop messaging bus

Chris PeBenito e376ad
		
Chris PeBenito e376ad
			
Chris PeBenito e376ad
			
Chris PeBenito e376ad
			dhcp
Chris PeBenito e376ad
			

Dynamic host configuration protocol (DHCP) server

Chris PeBenito e376ad
		
Chris PeBenito e376ad
			
Chris PeBenito e376ad
			
Chris PeBenito e376ad
			dictd
Chris PeBenito e376ad
			

Dictionary daemon

Chris PeBenito e376ad
		
Chris PeBenito e376ad
			
Chris PeBenito 862a1e
			
Chris PeBenito 862a1e
			finger
Chris PeBenito 862a1e
			

Finger user information service.

Chris PeBenito 862a1e
		
Chris PeBenito 862a1e
			
Chris PeBenito 862a1e
			
Chris PeBenito 862a1e
			ftp
Chris PeBenito 862a1e
			

File transfer protocol service

Chris PeBenito 862a1e
		
Chris PeBenito 862a1e
			
Chris PeBenito c2ecf0
			
Chris PeBenito c2ecf0
			gpm
Chris PeBenito c2ecf0
			

General Purpose Mouse driver

Chris PeBenito c2ecf0
		
Chris PeBenito c2ecf0
			
Chris PeBenito e376ad
			
Chris PeBenito e376ad
			hal
Chris PeBenito e376ad
			

Hardware abstraction layer

Chris PeBenito e376ad
		
Chris PeBenito e376ad
			
Chris PeBenito c2ecf0
			
Chris PeBenito c2ecf0
			howl
Chris PeBenito c2ecf0
			

Port of Apple Rendezvous multicast DNS

Chris PeBenito c2ecf0
		
Chris PeBenito c2ecf0
			
Chris PeBenito e3a8e3
			
Chris PeBenito e3a8e3
			inetd
Chris PeBenito e3a8e3
			

Internet services daemon.

Chris PeBenito e3a8e3
		
Chris PeBenito e3a8e3
			
Chris PeBenito e376ad
			
Chris PeBenito e376ad
			inn
Chris PeBenito e376ad
			

Internet News NNTP server

Chris PeBenito e376ad
		
Chris PeBenito e376ad
			
Chris PeBenito e3a8e3
			
Chris PeBenito e3a8e3
			kerberos
Chris PeBenito e3a8e3
			

MIT Kerberos admin and KDC

Chris PeBenito e3a8e3
		
Karl MacMillan 660bf7
			
Chris PeBenito 44a4c2
			
Chris PeBenito 44a4c2
			ktalk
Chris PeBenito 44a4c2
			

KDE Talk daemon

Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			
Chris PeBenito c2ecf0
			
Chris PeBenito c2ecf0
			ldap
Chris PeBenito c2ecf0
			

OpenLDAP directory server

Chris PeBenito c2ecf0
		
Chris PeBenito c2ecf0
			
Chris PeBenito 862a1e
			
Chris PeBenito 862a1e
			mailman
Chris PeBenito 862a1e
			

Mailman is for managing electronic mail discussion and e-newsletter lists

Chris PeBenito 862a1e
		
Chris PeBenito 862a1e
			
Karl MacMillan 660bf7
			
Karl MacMillan 660bf7
			mta
Karl MacMillan 660bf7
			

Policy common to all email tranfer agents.

Karl MacMillan 660bf7
		
Karl MacMillan 660bf7
			
Chris PeBenito c2ecf0
			
Chris PeBenito c2ecf0
			mysql
Chris PeBenito c2ecf0
			

Policy for MySQL

Chris PeBenito c2ecf0
		
Chris PeBenito c2ecf0
			
Chris PeBenito e3a8e3
			
Chris PeBenito e3a8e3
			nis
Chris PeBenito e3a8e3
			

Policy for NIS (YP) servers and clients

Chris PeBenito e3a8e3
		
Chris PeBenito e3a8e3
			
Chris PeBenito 8b1125
			
Chris PeBenito 8b1125
			nscd
Chris PeBenito 8b1125
			

Name service cache daemon

Chris PeBenito 8b1125
		
Chris PeBenito 8b1125
			
Chris PeBenito e376ad
			
Chris PeBenito e376ad
			ntp
Chris PeBenito e376ad
			

Network time protocol daemon

Chris PeBenito e376ad
		
Chris PeBenito e376ad
			
Chris PeBenito 44a4c2
			
Chris PeBenito 44a4c2
			portmap
Chris PeBenito 44a4c2
			

RPC port mapping service.

Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			
Chris PeBenito 44a4c2
			
Chris PeBenito 44a4c2
			postgresql
Chris PeBenito 44a4c2
			

PostgreSQL relational database

Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			
Chris PeBenito 862a1e
			
Chris PeBenito 862a1e
			ppp
Chris PeBenito 862a1e
			

Point to Point Protocol daemon creates links in ppp networks

Chris PeBenito 862a1e
		
Chris PeBenito 862a1e
			
Chris PeBenito c2ecf0
			
Chris PeBenito c2ecf0
			privoxy
Chris PeBenito c2ecf0
			

Privacy enhancing web proxy.

Chris PeBenito c2ecf0
		
Chris PeBenito c2ecf0
			
Chris PeBenito 862a1e
			
Chris PeBenito 862a1e
			radvd
Chris PeBenito 862a1e
			

IPv6 router advertisement daemon

Chris PeBenito 862a1e
		
Chris PeBenito 862a1e
			
Karl MacMillan 660bf7
			
Karl MacMillan 660bf7
			remotelogin
Karl MacMillan 660bf7
			

Policy for rshd, rlogind, and telnetd.

Karl MacMillan 660bf7
		
Karl MacMillan 660bf7
			
Chris PeBenito 44a4c2
			
Chris PeBenito 44a4c2
			rlogin
Chris PeBenito 44a4c2
			

Remote login daemon

Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			
Chris PeBenito c2ecf0
			
Chris PeBenito c2ecf0
			rshd
Chris PeBenito c2ecf0
			

Remote shell service.

Chris PeBenito c2ecf0
		
Chris PeBenito c2ecf0
			
Chris PeBenito c2ecf0
			
Chris PeBenito c2ecf0
			rsync
Chris PeBenito c2ecf0
			

Fast incremental file transfer for synchronization

Chris PeBenito c2ecf0
		
Chris PeBenito c2ecf0
			
Chris PeBenito 44a4c2
			
Chris PeBenito 44a4c2
			samba
Chris PeBenito 862a1e
			

Chris PeBenito 862a1e
SMB and CIFS client/server programs for UNIX and
Chris PeBenito 862a1e
name  Service  Switch  daemon for resolving names
Chris PeBenito 862a1e
from Windows NT servers.
Chris PeBenito 862a1e

Chris PeBenito 862a1e
		
Chris PeBenito 862a1e
			
Chris PeBenito 862a1e
			
Chris PeBenito 862a1e
			sasl
Chris PeBenito 862a1e
			

SASL authentication server

Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			
Karl MacMillan 660bf7
			
Karl MacMillan 660bf7
			sendmail
Karl MacMillan 660bf7
			

Policy for sendmail.

Karl MacMillan 660bf7
		
Chris PeBenito e3a8e3
			
Chris PeBenito 44a4c2
			
Chris PeBenito 44a4c2
			snmp
Chris PeBenito 44a4c2
			

Simple network management protocol services

Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			
Chris PeBenito e376ad
			
Chris PeBenito e376ad
			squid
Chris PeBenito e376ad
			

Squid caching http proxy server

Chris PeBenito e376ad
		
Chris PeBenito e376ad
			
Chris PeBenito e3a8e3
			
Chris PeBenito e3a8e3
			ssh
Chris PeBenito e3a8e3
			

Secure shell client and server policy.

Chris PeBenito e3a8e3
		
Chris PeBenito c2ecf0
			
Chris PeBenito 44a4c2
			
Chris PeBenito 44a4c2
			stunnel
Chris PeBenito 44a4c2
			

SSL Tunneling Proxy

Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			
Chris PeBenito c2ecf0
			
Chris PeBenito c2ecf0
			tcpd
Chris PeBenito c2ecf0
			

Policy for TCP daemon.

Chris PeBenito c2ecf0
		
Chris PeBenito 44a4c2
			
Chris PeBenito 44a4c2
			
Chris PeBenito 44a4c2
			telnet
Chris PeBenito 44a4c2
			

Telnet daemon

Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			
Chris PeBenito 44a4c2
			
Chris PeBenito 44a4c2
			tftp
Chris PeBenito 44a4c2
			

Trivial file transfer protocol daemon

Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			
Chris PeBenito 44a4c2
			
Chris PeBenito 44a4c2
			uucp
Chris PeBenito 44a4c2
			

Unix to Unix Copy

Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			
Chris PeBenito 44a4c2
			
Chris PeBenito 44a4c2
			zebra
Chris PeBenito 44a4c2
			

Zebra border gateway protocol network routing service

Chris PeBenito 44a4c2
		
Karl MacMillan 660bf7
		
Karl MacMillan 660bf7
	
Karl MacMillan 660bf7
		
Karl MacMillan 660bf7
		
Karl MacMillan 660bf7
	
Karl MacMillan 660bf7
Karl MacMillan 660bf7



Karl MacMillan 660bf7
Karl MacMillan 660bf7
Karl MacMillan 660bf7
</body>
Karl MacMillan 660bf7
</html>