Policy for mount.
false
Allow the mount command to mount any directory or file.
Execute mount in the mount domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed to transition. |
Execute mount in the unconfined mount domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed to transition. |
Execute mount in the caller domain.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Getattr on mount_runtime_t files
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
List mount runtime files.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Read loopback filesystem image files.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Read mount runtime files.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Execute mount in the mount domain, and allow the specified role the mount domain, and use the caller's terminal.
Parameter: | Description: |
---|---|
domain |
Domain allowed to transition. |
role |
Role allowed access. |
Execute mount in the unconfined mount domain, and allow the specified role the unconfined mount domain, and use the caller's terminal.
Parameter: | Description: |
---|---|
domain |
Domain allowed to transition. |
role |
Role allowed access. |
Read and write loopback filesystem image files.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Read and write mount runtime files.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Send a generic signal to mount.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Use file descriptors for mount.
Parameter: | Description: |
---|---|
domain |
The type of the process performing this action. |
Watch reads on mount runtime files.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Watch mount runtime dirs.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Watch mount runtime files.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |
Watch mount runtime files reads.
Parameter: | Description: |
---|---|
domain |
Domain allowed access. |