Layer: services

Module: git

Tunables Interfaces Templates

Description:

GIT revision control system.


Tunables:

allow_httpd_git_script_anon_write
Default value

false

Description

Determine whether the script domain can modify public files used for public file transfer services. Directories/Files must be labeled public_content_rw_t.

git_cgi_enable_homedirs
Default value

false

Description

Determine whether Git CGI can search home directories.

git_cgi_use_cifs
Default value

false

Description

Determine whether Git CGI can access cifs file systems.

git_cgi_use_nfs
Default value

false

Description

Determine whether Git CGI can access nfs file systems.

git_client_manage_all_user_home_content
Default value

false

Description

Determine whether Git client domains can manage all user home content, including application-specific data.

git_session_bind_all_unreserved_ports
Default value

false

Description

Determine whether Git session daemon can bind TCP sockets to all unreserved ports.

git_session_send_syslog_msg
Default value

false

Description

Determine whether Git session daemons can send syslog messages.

git_session_users
Default value

false

Description

Determine whether calling user domains can execute Git daemon in the git_session_t domain.

git_system_enable_homedirs
Default value

false

Description

Determine whether Git system daemon can search home directories.

git_system_use_cifs
Default value

false

Description

Determine whether Git system daemon can access cifs file systems.

git_system_use_nfs
Default value

false

Description

Determine whether Git system daemon can access nfs file systems.

Return

Interfaces:

git_read_generic_sys_content_files( domain )
Summary

Read generic system content files.

Parameters
Parameter:Description:
domain

Domain allowed access.

Return

Templates:

git_client_role_template( role_prefix , user_domain , user_exec_domain , role )
Summary

Role access for Git client.

Parameters
Parameter:Description:
role_prefix

The prefix of the user role (e.g., user is the prefix for user_r).

user_domain

User domain for the role.

user_exec_domain

User exec domain for execute and transition access.

role

Role allowed access

git_role( role_prefix , user_domain , user_exec_domain , role )
Summary

Role access for Git session.

Parameters
Parameter:Description:
role_prefix

The prefix of the user role (e.g., user is the prefix for user_r).

user_domain

User domain for the role.

user_exec_domain

User exec domain for execute and transition access.

role

Role allowed access

Return