Chris PeBenito 44a4c2
<html>
Chris PeBenito 44a4c2
<head>
Chris PeBenito 44a4c2
<title>
Chris PeBenito 44a4c2
 Security Enhanced Linux Reference Policy
Chris PeBenito 44a4c2
 </title>
Chris PeBenito 44a4c2
<style type="text/css" media="all">@import "style.css";</style>
Chris PeBenito 44a4c2
</head>
Chris PeBenito 44a4c2
<body>
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
	
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		admin
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
	
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		apps
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
	
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		kernel
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
	
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		services
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			bind
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			comsat
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			cpucontrol
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			cron
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			cvs
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			dbus
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			dhcp
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			dictd
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			gpm
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			hal
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			howl
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			inetd
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			inn
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			kerberos
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			ktalk
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			ldap
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			mta
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			mysql
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			nis
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			nscd
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			ntp
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			portmap
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			postgresql
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			privoxy
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			remotelogin
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			rlogin
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			rshd
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			rsync
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			samba
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			sendmail
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			snmp
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			squid
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			ssh
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			stunnel
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			tcpd
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			telnet
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			tftp
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			uucp
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			   - 
Chris PeBenito 44a4c2
			zebra
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
	
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		system
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
	
Chris PeBenito 44a4c2
	

Chris PeBenito 44a4c2
	* Global Booleans 
Chris PeBenito 44a4c2
	

Chris PeBenito 44a4c2
	* Global Tunables 
Chris PeBenito 44a4c2
	


Chris PeBenito 44a4c2
	* Layer Index
Chris PeBenito 44a4c2
	

Chris PeBenito 44a4c2
	* Interface Index
Chris PeBenito 44a4c2
	

Chris PeBenito 44a4c2
	* Template Index
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2

Layer: services

Chris PeBenito 44a4c2

Module: portmap

Chris PeBenito 44a4c2
Chris PeBenito 44a4c2

Description:

Chris PeBenito 44a4c2
Chris PeBenito 44a4c2

RPC port mapping service.

Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2

Interfaces:

Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
portmap_domtrans_helper(
Chris PeBenito 44a4c2
	
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		domain
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
	
Chris PeBenito 44a4c2
	)
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Summary
Chris PeBenito 44a4c2

Chris PeBenito 44a4c2
Execute portmap_helper in the helper domain.
Chris PeBenito 44a4c2

Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Parameters
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Parameter:Description:Optional:
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
domain
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Domain allowed access.
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
No
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
portmap_run_helper(
Chris PeBenito 44a4c2
	
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		domain
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
	
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			,
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		role
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
	
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
			,
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		terminal
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
	
Chris PeBenito 44a4c2
	)
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Summary
Chris PeBenito 44a4c2

Chris PeBenito 44a4c2
Execute portmap helper in the helper domain, and
Chris PeBenito 44a4c2
allow the specified role the helper domain.
Chris PeBenito 44a4c2
Communicate with portmap.
Chris PeBenito 44a4c2

Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Parameters
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Parameter:Description:Optional:
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
domain
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Domain allowed access.
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
No
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
role
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
The role to be allowed the portmap domain.
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
No
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
terminal
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
The type of the terminal allow the portmap domain to use.
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
No
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
portmap_udp_sendto(
Chris PeBenito 44a4c2
	
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
		domain
Chris PeBenito 44a4c2
		
Chris PeBenito 44a4c2
	
Chris PeBenito 44a4c2
	)
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Summary
Chris PeBenito 44a4c2

Chris PeBenito 44a4c2
Send UDP network traffic to portmap.
Chris PeBenito 44a4c2

Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Parameters
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Parameter:Description:Optional:
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
domain
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
The type of the process performing this action.
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
No
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Return
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
Chris PeBenito 44a4c2
</body>
Chris PeBenito 44a4c2
</html>