Policy for managing user accounts.
Check if the passwd binary is executable.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Check if the useradd binaries are executable.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Execute password admin functions in the admin passwd domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed to transition. |
Execute chfn in the chfn domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed to transition. |
Execute groupadd in the groupadd domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed to transition. |
Execute passwd in the passwd domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed to transition. |
Execute useradd in the useradd domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed to transition. |
Do not audit attempts to use useradd fds.
Parameter: | Description: |
---|---|
domain |
Domain to not audit. |
Send sigkills to passwd.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Read the crack database.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Execute passwd admin functions in the admin passwd domain, and allow the specified role the admin passwd domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed to transition. |
role |
Role allowed access. |
Execute chfn in the chfn domain, and allow the specified role the chfn domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed to transition. |
role |
Role allowed access. |
Execute groupadd in the groupadd domain, and allow the specified role the groupadd domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed to transition. |
role |
Role allowed access. |
Execute passwd in the passwd domain, and allow the specified role the passwd domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed to transition. |
role |
Role allowed access. |
Execute useradd in the useradd domain, and allow the specified role the useradd domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed to transition. |
role |
Role allowed access. |