Home | History | Annotate | Download | only in sepolicy
      1 ######################################
      2 # Attribute declarations
      3 #
      4 
      5 # All types used for devices.
      6 attribute dev_type;
      7 
      8 # All types used for processes.
      9 attribute domain;
     10 
     11 # All types used for filesystems.
     12 attribute fs_type;
     13 
     14 # All types used for context= mounts.
     15 attribute contextmount_type;
     16 
     17 # All types used for files that can exist on a labeled fs.
     18 # Do not use for pseudo file types.
     19 attribute file_type;
     20 
     21 # All types used for domain entry points.
     22 attribute exec_type;
     23 
     24 # All types used for /data files.
     25 attribute data_file_type;
     26 
     27 # All types use for sysfs files.
     28 attribute sysfs_type;
     29 
     30 # Attribute used for all sdcards
     31 attribute sdcard_type;
     32 
     33 # All types used for nodes/hosts.
     34 attribute node_type;
     35 
     36 # All types used for network interfaces.
     37 attribute netif_type;
     38 
     39 # All types used for network ports.
     40 attribute port_type;
     41 
     42 # All types used for property service
     43 attribute property_type;
     44 
     45 # All types used for services managed by service_manager.
     46 attribute service_manager_type;
     47 
     48 # All domains that can override MLS restrictions.
     49 # i.e. processes that can read up and write down.
     50 attribute mlstrustedsubject;
     51 
     52 # All types that can override MLS restrictions.
     53 # i.e. files that can be read by lower and written by higher
     54 attribute mlstrustedobject;
     55 
     56 # Domains that are allowed all permissions ("unconfined").
     57 attribute unconfineddomain;
     58 
     59 # All domains used for apps.
     60 attribute appdomain;
     61 
     62 # All domains used for apps with network access.
     63 attribute netdomain;
     64 
     65 # All domains used for apps with bluetooth access.
     66 attribute bluetoothdomain;
     67 
     68 # All domains used for binder service domains.
     69 attribute binderservicedomain;
     70