## Policy for virtualization ##################################### ## ## Transition to virt_bridgehelper. ## ## ## ## Domain allowed to transition. ## ## interface(`virt_domtrans_bridgehelper',` gen_require(` type virt_bridgehelper_t, virt_bridgehelper_exec_t; ') domtrans_pattern($1, virt_bridgehelper_exec_t, virt_bridgehelper_t) ') ######################################## ## ## Execute a qemu_exec_t in the callers domain ## ## ## ## Domain allowed access. ## ## # interface(`virt_exec_qemu',` gen_require(` type qemu_exec_t; ') can_exec($1, qemu_exec_t) ') ######################################## ## ## Role access for virt_bridgehelper ## ## ## ## Role allowed access ## ## # interface(`virt_bridgehelper_role',` gen_require(` type virt_bridgehelper_t; ') role $1 types virt_bridgehelper_t; ')