Home | History | Annotate | Download | only in sepolicy

Lines Matching refs:unconfineddomain

127 neverallow { appdomain -unconfineddomain } self:capability ~sys_nice;
128 neverallow { appdomain -unconfineddomain } self:capability2 *;
131 neverallow { appdomain -unconfineddomain } dev_type:blk_file { read write };
134 neverallow { appdomain -unconfineddomain } kmem_device:chr_file { read write };
138 neverallow { appdomain -unconfineddomain } kernel:security { setenforce setbool };
144 neverallow { appdomain -unconfineddomain }
159 neverallow { appdomain -unconfineddomain } { domain -appdomain }:process ptrace;
162 neverallow { appdomain -unconfineddomain } ~appdomain:process { transition dyntransition };
165 neverallow { appdomain -unconfineddomain } system_file:dir_file_class_set write;
172 neverallow { appdomain -unconfineddomain -system_app } system_data_file:dir_file_class_set write;