Policy for RootlessKit
Execute rootlesskit in the rootlesskit domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed to transition. |
Execute rootlesskit in the caller domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Execute rootlesskit in the rootlesskit domain, and allow the specified role the rootlesskit domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed to transition. |
role |
The role to be allowed the rootlesskit domain. |
Role access for rootlesskit.
Parameter: | Description: |
---|---|
role_prefix |
The prefix of the user role (e.g., user is the prefix for user_r). |
user_domain |
User domain for the role. |
user_exec_domain |
User exec domain for execute and transition access. |
role |
Role allowed access. |