Policy for system libraries.
Delete generic symlinks in library directories.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
Execute ldconfig in the ldconfig domain.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed to transition. |
Do not audit attempts to manage to library directories.
Do not audit attempts to manage to library directories. Typically this is used to quiet attempts to recompile python byte code.
| Parameter: | Description: |
|---|---|
| domain |
Domain to not audit. |
Do not audit attempts to create, read, write, and delete generic files in library directories.
| Parameter: | Description: |
|---|---|
| domain |
Domain to not audit. |
dontaudit attempts to setattr on library files
| Parameter: | Description: |
|---|---|
| domain |
Domain to not audit. |
Do not audit attempts to write to library directories.
Do not audit attempts to write to library directories. Typically this is used to quiet attempts to recompile python byte code.
| Parameter: | Description: |
|---|---|
| domain |
Domain to not audit. |
Execute the dynamic link/loader in the caller's domain.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
Execute ldconfig in the caller domain.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
Execute library scripts in the caller domain.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
Use the dynamic link/loader for automatic loading of shared libraries with legacy support.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
Load and execute functions from shared libraries, with legacy support.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
Create, read, write, and delete the dynamic link/loader.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
Create, read, write, and delete library directories.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
Create, read, write, and delete generic files in library directories.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
Create, read, write, and delete shared libraries.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
Read files in the library directories, such as static libraries.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
Relabel to and from the type used for the dynamic link/loader.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
Relabel to and from the type used for generic lib files.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
Relabel to and from the type used for shared libraries.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
Relabel files to the type used in library directories.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
Execute ldconfig in the ldconfig domain.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed to transition. |
| role |
The role to allow the ldconfig domain. |
Modify the dynamic link/loader's cached listing of shared libraries.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
Search library directories.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
Use the dynamic link/loader for automatic loading of shared libraries.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
Load and execute functions from shared libraries.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
Watch /usr/lib directories
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
watch lib dirs
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
watch lib dirs
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |