blob: 8c5ac334cabeb71b20758735d046d7512396f038 (
plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
|
<!ELEMENT busconfig (user |
type |
fork |
keep_umask |
listen |
pidfile |
includedir |
servicedir |
servicehelper |
auth |
include |
policy |
limit |
selinux |
apparmor)*>
<!ELEMENT user (#PCDATA)>
<!ELEMENT listen (#PCDATA)>
<!ELEMENT includedir (#PCDATA)>
<!ELEMENT servicedir (#PCDATA)>
<!ELEMENT servicehelper (#PCDATA)>
<!ELEMENT auth (#PCDATA)>
<!ELEMENT type (#PCDATA)>
<!ELEMENT pidfile (#PCDATA)>
<!ELEMENT fork EMPTY>
<!ELEMENT keep_umask EMPTY>
<!ELEMENT include (#PCDATA)>
<!ATTLIST include
ignore_missing (yes|no) "no"
if_selinux_enabled (yes|no) "no"
selinux_root_relative (yes|no) "no">
<!ELEMENT policy (allow|deny)*>
<!ATTLIST policy
context (default|mandatory) #IMPLIED
user CDATA #IMPLIED
group CDATA #IMPLIED
at_console (yes|no) #IMPLIED>
<!ELEMENT allow EMPTY>
<!ATTLIST allow
user CDATA #IMPLIED
send CDATA #IMPLIED
receive CDATA #IMPLIED
own CDATA #IMPLIED
send_to CDATA #IMPLIED
receive_from CDATA #IMPLIED>
<!ELEMENT deny EMPTY>
<!ATTLIST deny
user CDATA #IMPLIED
send CDATA #IMPLIED
receive CDATA #IMPLIED
own CDATA #IMPLIED
send_to CDATA #IMPLIED
receive_from CDATA #IMPLIED>
<!ELEMENT limit (#PCDATA)>
<!ATTLIST limit name CDATA #REQUIRED>
<!ELEMENT selinux (associate)*>
<!ELEMENT associate EMPTY>
<!ATTLIST associate
own CDATA #REQUIRED
context CDATA #REQUIRED>
<!ELEMENT apparmor EMPTY>
<!ATTLIST apparmor
mode (required|enabled|disabled) "enabled">
|