RSBAC 1.4.7 RC Configuration


Types

22 FD types defined

NumberNameSecdel
0General FDno
1Security FDno
2System FDno
3Executablesno
4Librariesno
5SysExecutablesno
6InitScriptsno
7Configsno
8ConfigsUserno
9TempDirsno
10Homeno
11HomeAdminno
12HomeUserno
13Varno
14VarCacheno
15VarLibno
16VarSpoolno
17VarSpoolMailno
18VarSpoolCronno
19VarLogno
20VarSpoolPostfixno
21VarRunno

3 DEV types defined

NumberName
0General Device
1Security Device
2System Device

3 IPC types defined

NumberName
0General IPC
1Security IPC
2System IPC

26 SCD types defined

NumberName
0time_strucs
1clock
2host_id
3net_id
4ioports
5rlimit
6swap
7syslog
8rsbac
9rsbac_log
10other
11kmem
12network
13firewall
14priority
15sysfs
16rsbac_remote_lo
17quota
18sysctl
19nfsd
20ksyms
21mlock
22capability
23kexec
24videomem
32auth_administra

3 USER types defined

NumberName
0General User
1Security User
2System User

4 PROCESS types defined

NumberName
0General Process
1Security Proc
2System Process
999999Kernel Process

1 GROUP types defined

NumberName
0General Group

3 NETDEV types defined

NumberName
0General NETDEV
1Security NETDEV
2System NETDEV

3 NETTEMP types defined

NumberName
0General NETTEMP
1Securit NETTEMP
2System NETTEMP

3 NETOBJ types defined

NumberName
0General NETOBJ
1Security NETOBJ
2System NETOBJ

24 Roles defined

Role 0: General User

Admin TypeNo Admin
Default FD Create Type4294967294 (S: Inherit Parent)
Default User Create Type0 (General User)
Default Process Create Type4294967294 (S: Inherit Parent)
Default Process Chown Type4294967291 (S: Use New Role Def Create)
Default Process Execute Type4294967294 (S: Inherit Parent)
Default IPC Create Type0 (General IPC)
Default Group Create Type0 (General Group)
Default Unixsock Create Type4294967289 (*Unknown*)
Boot RoleNo
Req ReauthNo

FD Type Compatibilities of Role 0:

0 (General FD) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
3 (Executables) CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
4 (Libraries) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
7 (Configs) SEARCH
8 (ConfigsUser) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
9 (TempDirs) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
10 (Home) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
11 (HomeAdmin) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
12 (HomeUser) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
13 (Var) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
17 (VarSpoolMail) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO

DEV Type Compatibilities of Role 0:

0 (General Device) APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL

IPC Type Compatibilities of Role 0:

0 (General IPC) ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK

SCD Type Compatibilities of Role 0:

5 (rlimit) GET_STATUS_DATA MODIFY_SYSTEM_DATA
10 (other) MAP_EXEC
12 (network) GET_STATUS_DATA

USER Type Compatibilities of Role 0:

0 (General User) CHANGE_OWNER GET_STATUS_DATA SEARCH

PROCESS Type Compatibilities of Role 0:

0 (General Process) CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
999999 (Kernel Process) GET_STATUS_DATA TERMINATE

GROUP Type Compatibilities of Role 0:

0 (General Group) GET_STATUS_DATA SEARCH

NETDEV Type Compatibilities of Role 0:

0 (General NETDEV) GET_STATUS_DATA MODIFY_SYSTEM_DATA BIND

NETOBJ Type Compatibilities of Role 0:

0 (General NETOBJ) CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL

Role 1: Role Admin

Administrated roles 0 1 2 3 4 5 6 7
Admin TypeRole Admin
Default FD Create Type4294967294 (S: Inherit Parent)
Default User Create Type0 (General User)
Default Process Create Type4294967294 (S: Inherit Parent)
Default Process Chown Type4294967291 (S: Use New Role Def Create)
Default Process Execute Type4294967294 (S: Inherit Parent)
Default IPC Create Type0 (General IPC)
Default Group Create Type0 (General Group)
Default Unixsock Create Type4294967289 (*Unknown*)
Boot RoleNo
Req ReauthNo

FD Type Compatibilities of Role 1:

0 (General FD) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
1 (Security FD) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_ATTRIBUTE MODIFY_PERMISSIONS_DATA READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
2 (System FD) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
3 (Executables) CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
4 (Libraries) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
5 (SysExecutables) CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
6 (InitScripts) CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
7 (Configs) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
8 (ConfigsUser) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
9 (TempDirs) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
10 (Home) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
11 (HomeAdmin) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
12 (HomeUser) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
13 (Var) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
17 (VarSpoolMail) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
21 (VarRun) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH

DEV Type Compatibilities of Role 1:

0 (General Device) APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
1 (Security Device) APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT

IPC Type Compatibilities of Role 1:

0 (General IPC) ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
1 (Security IPC) ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT

SCD Type Compatibilities of Role 1:

5 (rlimit) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
8 (rsbac) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
9 (rsbac_log) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
10 (other) MODIFY_PERMISSIONS_DATA SWITCH_LOG SWITCH_MODULE MAP_EXEC ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
12 (network) GET_STATUS_DATA ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
13 (firewall) GET_STATUS_DATA ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
15 (sysfs) GET_STATUS_DATA ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
32 (auth_administra) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT

USER Type Compatibilities of Role 1:

0 (General User) CHANGE_GROUP CHANGE_OWNER CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_PERMISSIONS_DATA READ READ_ATTRIBUTE RENAME SEARCH WRITE AUTHENTICATE ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
1 (Security User) CHANGE_GROUP CHANGE_OWNER CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_PERMISSIONS_DATA READ READ_ATTRIBUTE RENAME SEARCH WRITE AUTHENTICATE ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
2 (System User) CHANGE_GROUP CHANGE_OWNER CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_PERMISSIONS_DATA READ READ_ATTRIBUTE RENAME SEARCH WRITE AUTHENTICATE ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT

PROCESS Type Compatibilities of Role 1:

0 (General Process) CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_SYSTEM_DATA READ_ATTRIBUTE SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
1 (Security Proc) CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_SYSTEM_DATA READ_ATTRIBUTE SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
999999 (Kernel Process) CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_SYSTEM_DATA READ_ATTRIBUTE SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT

GROUP Type Compatibilities of Role 1:

0 (General Group) CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_PERMISSIONS_DATA READ READ_ATTRIBUTE RENAME SEARCH WRITE ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT

NETDEV Type Compatibilities of Role 1:

0 (General NETDEV) GET_STATUS_DATA MODIFY_ATTRIBUTE READ_ATTRIBUTE ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
1 (Security NETDEV) GET_STATUS_DATA MODIFY_ATTRIBUTE READ_ATTRIBUTE ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
2 (System NETDEV) GET_STATUS_DATA MODIFY_ATTRIBUTE READ_ATTRIBUTE ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT

NETTEMP Type Compatibilities of Role 1:

0 (General NETTEMP) CREATE DELETE MODIFY_ATTRIBUTE READ READ_ATTRIBUTE WRITE ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
1 (Securit NETTEMP) CREATE DELETE MODIFY_ATTRIBUTE READ READ_ATTRIBUTE WRITE ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT

NETOBJ Type Compatibilities of Role 1:

0 (General NETOBJ) CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_ATTRIBUTE WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT

Role 2: System Admin

Admin TypeSystem Admin
Default FD Create Type4294967294 (S: Inherit Parent)
Default User Create Type0 (General User)
Default Process Create Type4294967294 (S: Inherit Parent)
Default Process Chown Type4294967291 (S: Use New Role Def Create)
Default Process Execute Type4294967294 (S: Inherit Parent)
Default IPC Create Type0 (General IPC)
Default Group Create Type0 (General Group)
Default Unixsock Create Type4294967289 (*Unknown*)
Boot RoleNo
Req ReauthNo

FD Type Compatibilities of Role 2:

0 (General FD) ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
2 (System FD) ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
3 (Executables) ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
4 (Libraries) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
5 (SysExecutables) ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
6 (InitScripts) ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
7 (Configs) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
8 (ConfigsUser) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
10 (Home) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
13 (Var) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
19 (VarLog) APPEND_OPEN CHANGE_OWNER CREATE DELETE LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA RENAME TRUNCATE WRITE WRITE_OPEN IOCTL LOCK MOVETO

DEV Type Compatibilities of Role 2:

0 (General Device) ADD_TO_KERNEL APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL UMOUNT WRITE WRITE_OPEN SEND IOCTL
2 (System Device) ADD_TO_KERNEL APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL UMOUNT WRITE WRITE_OPEN SEND IOCTL

IPC Type Compatibilities of Role 2:

0 (General IPC) ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK
2 (System IPC) ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK

SCD Type Compatibilities of Role 2:

0 (time_strucs) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
1 (clock) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
2 (host_id) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
3 (net_id) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
4 (ioports) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
5 (rlimit) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
6 (swap) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
7 (syslog) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
8 (rsbac) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
10 (other) ADD_TO_KERNEL MODIFY_SYSTEM_DATA MOUNT REMOVE_FROM_KERNEL SHUTDOWN UMOUNT MAP_EXEC
12 (network) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
13 (firewall) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
14 (priority) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
15 (sysfs) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
16 (rsbac_remote_lo) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
17 (quota) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
18 (sysctl) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
19 (nfsd) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
20 (ksyms) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
21 (mlock) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
22 (capability) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
23 (kexec) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
24 (videomem) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE

USER Type Compatibilities of Role 2:

0 (General User) CHANGE_OWNER GET_STATUS_DATA SEARCH AUTHENTICATE
1 (Security User) SEARCH AUTHENTICATE
2 (System User) GET_STATUS_DATA SEARCH AUTHENTICATE

PROCESS Type Compatibilities of Role 2:

0 (General Process) CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
2 (System Process) CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
999999 (Kernel Process) CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP

GROUP Type Compatibilities of Role 2:

0 (General Group) GET_STATUS_DATA READ SEARCH

NETDEV Type Compatibilities of Role 2:

0 (General NETDEV) GET_STATUS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE BIND

NETTEMP Type Compatibilities of Role 2:

0 (General NETTEMP) READ

NETOBJ Type Compatibilities of Role 2:

0 (General NETOBJ) CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_ATTRIBUTE WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL

Role 3: Auditor

Default FD Create Type4294967294 (S: Inherit Parent)
Default User Create Type0 (General User)
Default Process Create Type4294967294 (S: Inherit Parent)
Default Process Chown Type4294967291 (S: Use New Role Def Create)
Default Process Execute Type4294967294 (S: Inherit Parent)
Default IPC Create Type0 (General IPC)
Default Group Create Type0 (General Group)
Default Unixsock Create Type4294967289 (*Unknown*)
Boot RoleNo
Req ReauthNo

FD Type Compatibilities of Role 3:

0 (General FD) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
3 (Executables) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
8 (ConfigsUser) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH

DEV Type Compatibilities of Role 3:

0 (General Device) APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL

IPC Type Compatibilities of Role 3:

0 (General IPC) ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK

SCD Type Compatibilities of Role 3:

5 (rlimit) GET_STATUS_DATA MODIFY_SYSTEM_DATA
9 (rsbac_log) GET_STATUS_DATA MODIFY_SYSTEM_DATA
10 (other) MAP_EXEC
12 (network) GET_STATUS_DATA

USER Type Compatibilities of Role 3:

0 (General User) CHANGE_OWNER GET_STATUS_DATA SEARCH

PROCESS Type Compatibilities of Role 3:

0 (General Process) CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
999999 (Kernel Process) CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP

GROUP Type Compatibilities of Role 3:

0 (General Group) GET_STATUS_DATA SEARCH

NETDEV Type Compatibilities of Role 3:

0 (General NETDEV) GET_STATUS_DATA MODIFY_SYSTEM_DATA BIND

NETOBJ Type Compatibilities of Role 3:

0 (General NETOBJ) CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL

Role 4: InitRole

Admin TypeSystem Admin
Default FD Create Type4294967294 (S: Inherit Parent)
Default User Create Type0 (General User)
Default Process Create Type4294967294 (S: Inherit Parent)
Default Process Chown Type4294967291 (S: Use New Role Def Create)
Default Process Execute Type4294967294 (S: Inherit Parent)
Default IPC Create Type0 (General IPC)
Default Group Create Type0 (General Group)
Default Unixsock Create Type4294967289 (*Unknown*)
Boot RoleNo
Req ReauthNo

FD Type Compatibilities of Role 4:

0 (General FD) ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
2 (System FD) ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
3 (Executables) ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
4 (Libraries) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
5 (SysExecutables) ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
6 (InitScripts) ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
7 (Configs) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
8 (ConfigsUser) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
13 (Var) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH

DEV Type Compatibilities of Role 4:

0 (General Device) ADD_TO_KERNEL APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL UMOUNT WRITE WRITE_OPEN SEND IOCTL
2 (System Device) ADD_TO_KERNEL APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL UMOUNT WRITE WRITE_OPEN SEND IOCTL

IPC Type Compatibilities of Role 4:

0 (General IPC) ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK
2 (System IPC) ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK

SCD Type Compatibilities of Role 4:

0 (time_strucs) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
1 (clock) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
2 (host_id) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
3 (net_id) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
4 (ioports) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
5 (rlimit) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
6 (swap) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
7 (syslog) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
8 (rsbac) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
10 (other) ADD_TO_KERNEL MODIFY_SYSTEM_DATA MOUNT REMOVE_FROM_KERNEL SHUTDOWN UMOUNT MAP_EXEC
12 (network) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
13 (firewall) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
14 (priority) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
15 (sysfs) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
16 (rsbac_remote_lo) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
17 (quota) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
18 (sysctl) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
19 (nfsd) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
20 (ksyms) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
21 (mlock) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
22 (capability) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
23 (kexec) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
24 (videomem) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE

USER Type Compatibilities of Role 4:

0 (General User) CHANGE_OWNER GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_ATTRIBUTE SEARCH AUTHENTICATE
1 (Security User) CHANGE_OWNER SEARCH AUTHENTICATE
2 (System User) GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_ATTRIBUTE SEARCH AUTHENTICATE

PROCESS Type Compatibilities of Role 4:

0 (General Process) CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
2 (System Process) CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
999999 (Kernel Process) CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP

NETDEV Type Compatibilities of Role 4:

0 (General NETDEV) GET_STATUS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE BIND

NETTEMP Type Compatibilities of Role 4:

0 (General NETTEMP) READ

NETOBJ Type Compatibilities of Role 4:

0 (General NETOBJ) CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_ATTRIBUTE WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL

Role 5: RootRole

Default FD Create Type4294967294 (S: Inherit Parent)
Default User Create Type0 (General User)
Default Process Create Type4294967294 (S: Inherit Parent)
Default Process Chown Type4294967291 (S: Use New Role Def Create)
Default Process Execute Type4294967294 (S: Inherit Parent)
Default IPC Create Type0 (General IPC)
Default Group Create Type0 (General Group)
Default Unixsock Create Type4294967289 (*Unknown*)
Boot RoleNo
Req ReauthNo

FD Type Compatibilities of Role 5:

0 (General FD) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
3 (Executables) CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
4 (Libraries) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
5 (SysExecutables) CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
6 (InitScripts) CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
7 (Configs) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
8 (ConfigsUser) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
9 (TempDirs) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
10 (Home) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
11 (HomeAdmin) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
12 (HomeUser) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
13 (Var) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
17 (VarSpoolMail) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
18 (VarSpoolCron) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
19 (VarLog) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH

DEV Type Compatibilities of Role 5:

0 (General Device) APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL

IPC Type Compatibilities of Role 5:

0 (General IPC) ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK

SCD Type Compatibilities of Role 5:

5 (rlimit) GET_STATUS_DATA MODIFY_SYSTEM_DATA
10 (other) MAP_EXEC
12 (network) GET_STATUS_DATA

USER Type Compatibilities of Role 5:

0 (General User) CHANGE_OWNER GET_STATUS_DATA SEARCH

PROCESS Type Compatibilities of Role 5:

0 (General Process) CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
999999 (Kernel Process) GET_STATUS_DATA TERMINATE

GROUP Type Compatibilities of Role 5:

0 (General Group) GET_STATUS_DATA SEARCH

NETDEV Type Compatibilities of Role 5:

0 (General NETDEV) GET_STATUS_DATA MODIFY_SYSTEM_DATA BIND

NETOBJ Type Compatibilities of Role 5:

0 (General NETOBJ) CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL

Role 6: LoginRole

Default FD Create Type4294967294 (S: Inherit Parent)
Default User Create Type0 (General User)
Default Process Create Type4294967294 (S: Inherit Parent)
Default Process Chown Type4294967291 (S: Use New Role Def Create)
Default Process Execute Type4294967294 (S: Inherit Parent)
Default IPC Create Type0 (General IPC)
Default Group Create Type0 (General Group)
Default Unixsock Create Type4294967289 (*Unknown*)
Boot RoleNo
Req ReauthNo

FD Type Compatibilities of Role 6:

0 (General FD) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
3 (Executables) CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
4 (Libraries) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
7 (Configs) SEARCH
8 (ConfigsUser) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
9 (TempDirs) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
10 (Home) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
11 (HomeAdmin) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
12 (HomeUser) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
13 (Var) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
17 (VarSpoolMail) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO

DEV Type Compatibilities of Role 6:

0 (General Device) APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL

IPC Type Compatibilities of Role 6:

0 (General IPC) ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK

SCD Type Compatibilities of Role 6:

5 (rlimit) GET_STATUS_DATA MODIFY_SYSTEM_DATA
10 (other) MAP_EXEC
12 (network) GET_STATUS_DATA

USER Type Compatibilities of Role 6:

0 (General User) CHANGE_OWNER GET_STATUS_DATA SEARCH

PROCESS Type Compatibilities of Role 6:

0 (General Process) CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
999999 (Kernel Process) GET_STATUS_DATA TERMINATE

GROUP Type Compatibilities of Role 6:

0 (General Group) GET_STATUS_DATA SEARCH

NETDEV Type Compatibilities of Role 6:

0 (General NETDEV) GET_STATUS_DATA MODIFY_SYSTEM_DATA BIND

NETOBJ Type Compatibilities of Role 6:

0 (General NETOBJ) CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL

Role 7: SshdRole

Default FD Create Type4294967294 (S: Inherit Parent)
Default User Create Type0 (General User)
Default Process Create Type4294967294 (S: Inherit Parent)
Default Process Chown Type4294967291 (S: Use New Role Def Create)
Default Process Execute Type4294967294 (S: Inherit Parent)
Default IPC Create Type0 (General IPC)
Default Group Create Type0 (General Group)
Default Unixsock Create Type4294967289 (*Unknown*)
Boot RoleNo
Req ReauthNo

FD Type Compatibilities of Role 7:

0 (General FD) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
3 (Executables) CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
4 (Libraries) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
5 (SysExecutables) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
7 (Configs) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
8 (ConfigsUser) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
9 (TempDirs) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
10 (Home) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
11 (HomeAdmin) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
12 (HomeUser) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
13 (Var) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
17 (VarSpoolMail) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
19 (VarLog) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
21 (VarRun) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO

DEV Type Compatibilities of Role 7:

0 (General Device) APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL

IPC Type Compatibilities of Role 7:

0 (General IPC) ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK

SCD Type Compatibilities of Role 7:

5 (rlimit) GET_STATUS_DATA MODIFY_SYSTEM_DATA
10 (other) MAP_EXEC
12 (network) GET_STATUS_DATA

USER Type Compatibilities of Role 7:

0 (General User) CHANGE_OWNER GET_STATUS_DATA SEARCH

PROCESS Type Compatibilities of Role 7:

0 (General Process) CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
999999 (Kernel Process) GET_STATUS_DATA TERMINATE

GROUP Type Compatibilities of Role 7:

0 (General Group) GET_STATUS_DATA SEARCH

NETDEV Type Compatibilities of Role 7:

0 (General NETDEV) GET_STATUS_DATA MODIFY_SYSTEM_DATA BIND

NETOBJ Type Compatibilities of Role 7:

0 (General NETOBJ) CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL

Role 8: SyslogRole

Default FD Create Type4294967294 (S: Inherit Parent)
Default User Create Type0 (General User)
Default Process Create Type4294967294 (S: Inherit Parent)
Default Process Chown Type4294967291 (S: Use New Role Def Create)
Default Process Execute Type4294967294 (S: Inherit Parent)
Default IPC Create Type0 (General IPC)
Default Group Create Type0 (General Group)
Default Unixsock Create Type4294967289 (*Unknown*)
Boot RoleNo
Req ReauthNo

FD Type Compatibilities of Role 8:

0 (General FD) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
3 (Executables) CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
4 (Libraries) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
7 (Configs) SEARCH
8 (ConfigsUser) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
9 (TempDirs) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
10 (Home) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
11 (HomeAdmin) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
12 (HomeUser) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
13 (Var) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
17 (VarSpoolMail) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
19 (VarLog) APPEND_OPEN CHANGE_OWNER CLOSE CREATE DELETE GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA RENAME SEARCH TRUNCATE WRITE WRITE_OPEN IOCTL LOCK MOVETO

DEV Type Compatibilities of Role 8:

0 (General Device) APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL

IPC Type Compatibilities of Role 8:

0 (General IPC) ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK

SCD Type Compatibilities of Role 8:

5 (rlimit) GET_STATUS_DATA MODIFY_SYSTEM_DATA
10 (other) MAP_EXEC
12 (network) GET_STATUS_DATA

USER Type Compatibilities of Role 8:

0 (General User) CHANGE_OWNER GET_STATUS_DATA SEARCH

PROCESS Type Compatibilities of Role 8:

0 (General Process) CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
999999 (Kernel Process) GET_STATUS_DATA TERMINATE

GROUP Type Compatibilities of Role 8:

0 (General Group) GET_STATUS_DATA SEARCH

NETDEV Type Compatibilities of Role 8:

0 (General NETDEV) GET_STATUS_DATA MODIFY_SYSTEM_DATA BIND

NETOBJ Type Compatibilities of Role 8:

0 (General NETOBJ) CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL

Role 9: CronRole

Default FD Create Type4294967294 (S: Inherit Parent)
Default User Create Type0 (General User)
Default Process Create Type4294967294 (S: Inherit Parent)
Default Process Chown Type4294967291 (S: Use New Role Def Create)
Default Process Execute Type4294967294 (S: Inherit Parent)
Default IPC Create Type0 (General IPC)
Default Group Create Type0 (General Group)
Default Unixsock Create Type4294967289 (*Unknown*)
Boot RoleNo
Req ReauthNo

FD Type Compatibilities of Role 9:

0 (General FD) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
3 (Executables) CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
4 (Libraries) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
7 (Configs) SEARCH
8 (ConfigsUser) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
9 (TempDirs) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
10 (Home) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
11 (HomeAdmin) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
12 (HomeUser) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
13 (Var) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
17 (VarSpoolMail) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO

DEV Type Compatibilities of Role 9:

0 (General Device) APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL

IPC Type Compatibilities of Role 9:

0 (General IPC) ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK

SCD Type Compatibilities of Role 9:

5 (rlimit) GET_STATUS_DATA MODIFY_SYSTEM_DATA
10 (other) MAP_EXEC
12 (network) GET_STATUS_DATA

USER Type Compatibilities of Role 9:

0 (General User) CHANGE_OWNER GET_STATUS_DATA SEARCH

PROCESS Type Compatibilities of Role 9:

0 (General Process) CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
999999 (Kernel Process) GET_STATUS_DATA TERMINATE

GROUP Type Compatibilities of Role 9:

0 (General Group) GET_STATUS_DATA SEARCH

NETDEV Type Compatibilities of Role 9:

0 (General NETDEV) GET_STATUS_DATA MODIFY_SYSTEM_DATA BIND

NETOBJ Type Compatibilities of Role 9:

0 (General NETOBJ) CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL

Role 10: NamedRole_I

Default FD Create Type4294967294 (S: Inherit Parent)
Default User Create Type0 (General User)
Default Process Create Type4294967294 (S: Inherit Parent)
Default Process Chown Type4294967291 (S: Use New Role Def Create)
Default Process Execute Type4294967294 (S: Inherit Parent)
Default IPC Create Type0 (General IPC)
Default Group Create Type0 (General Group)
Default Unixsock Create Type4294967289 (*Unknown*)
Boot RoleNo
Req ReauthNo

FD Type Compatibilities of Role 10:

0 (General FD) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
3 (Executables) CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
4 (Libraries) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
7 (Configs) SEARCH
8 (ConfigsUser) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
9 (TempDirs) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
10 (Home) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
11 (HomeAdmin) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
12 (HomeUser) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
13 (Var) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
17 (VarSpoolMail) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO

DEV Type Compatibilities of Role 10:

0 (General Device) APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL

IPC Type Compatibilities of Role 10:

0 (General IPC) ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK

SCD Type Compatibilities of Role 10:

5 (rlimit) GET_STATUS_DATA MODIFY_SYSTEM_DATA
10 (other) MAP_EXEC
12 (network) GET_STATUS_DATA

USER Type Compatibilities of Role 10:

0 (General User) CHANGE_OWNER GET_STATUS_DATA SEARCH

PROCESS Type Compatibilities of Role 10:

0 (General Process) CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
999999 (Kernel Process) GET_STATUS_DATA TERMINATE

GROUP Type Compatibilities of Role 10:

0 (General Group) GET_STATUS_DATA SEARCH

NETDEV Type Compatibilities of Role 10:

0 (General NETDEV) GET_STATUS_DATA MODIFY_SYSTEM_DATA BIND

NETOBJ Type Compatibilities of Role 10:

0 (General NETOBJ) CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL

Role 11: NamedRole_F

Default FD Create Type4294967294 (S: Inherit Parent)
Default User Create Type0 (General User)
Default Process Create Type4294967294 (S: Inherit Parent)
Default Process Chown Type4294967291 (S: Use New Role Def Create)
Default Process Execute Type4294967294 (S: Inherit Parent)
Default IPC Create Type0 (General IPC)
Default Group Create Type0 (General Group)
Default Unixsock Create Type4294967289 (*Unknown*)
Boot RoleNo
Req ReauthNo

FD Type Compatibilities of Role 11:

0 (General FD) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
3 (Executables) CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
4 (Libraries) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
7 (Configs) SEARCH
8 (ConfigsUser) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
9 (TempDirs) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
10 (Home) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
11 (HomeAdmin) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
12 (HomeUser) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
13 (Var) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
17 (VarSpoolMail) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
19 (VarLog) APPEND_OPEN CHANGE_OWNER CREATE DELETE GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA RENAME TRUNCATE WRITE WRITE_OPEN IOCTL LOCK MOVETO

DEV Type Compatibilities of Role 11:

0 (General Device) APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL

IPC Type Compatibilities of Role 11:

0 (General IPC) ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK

SCD Type Compatibilities of Role 11:

5 (rlimit) GET_STATUS_DATA MODIFY_SYSTEM_DATA
10 (other) MAP_EXEC
12 (network) GET_STATUS_DATA

USER Type Compatibilities of Role 11:

0 (General User) CHANGE_OWNER GET_STATUS_DATA SEARCH

PROCESS Type Compatibilities of Role 11:

0 (General Process) CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
999999 (Kernel Process) GET_STATUS_DATA TERMINATE

GROUP Type Compatibilities of Role 11:

0 (General Group) GET_STATUS_DATA SEARCH

NETDEV Type Compatibilities of Role 11:

0 (General NETDEV) GET_STATUS_DATA MODIFY_SYSTEM_DATA BIND

NETOBJ Type Compatibilities of Role 11:

0 (General NETOBJ) CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL

Role 12: SquidRole_I

Default FD Create Type4294967294 (S: Inherit Parent)
Default User Create Type0 (General User)
Default Process Create Type4294967294 (S: Inherit Parent)
Default Process Chown Type4294967291 (S: Use New Role Def Create)
Default Process Execute Type4294967294 (S: Inherit Parent)
Default IPC Create Type0 (General IPC)
Default Group Create Type0 (General Group)
Default Unixsock Create Type4294967289 (*Unknown*)
Boot RoleNo
Req ReauthNo

FD Type Compatibilities of Role 12:

0 (General FD) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
3 (Executables) CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
4 (Libraries) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
7 (Configs) SEARCH
8 (ConfigsUser) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
9 (TempDirs) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
10 (Home) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
11 (HomeAdmin) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
12 (HomeUser) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
13 (Var) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
17 (VarSpoolMail) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO

DEV Type Compatibilities of Role 12:

0 (General Device) APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL

IPC Type Compatibilities of Role 12:

0 (General IPC) ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK

SCD Type Compatibilities of Role 12:

5 (rlimit) GET_STATUS_DATA MODIFY_SYSTEM_DATA
10 (other) MAP_EXEC
12 (network) GET_STATUS_DATA

USER Type Compatibilities of Role 12:

0 (General User) CHANGE_OWNER GET_STATUS_DATA SEARCH

PROCESS Type Compatibilities of Role 12:

0 (General Process) CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
999999 (Kernel Process) GET_STATUS_DATA TERMINATE

GROUP Type Compatibilities of Role 12:

0 (General Group) GET_STATUS_DATA SEARCH

NETDEV Type Compatibilities of Role 12:

0 (General NETDEV) GET_STATUS_DATA MODIFY_SYSTEM_DATA BIND

NETOBJ Type Compatibilities of Role 12:

0 (General NETOBJ) CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL

Role 13: SquidRole_F

Default FD Create Type4294967294 (S: Inherit Parent)
Default User Create Type0 (General User)
Default Process Create Type4294967294 (S: Inherit Parent)
Default Process Chown Type4294967291 (S: Use New Role Def Create)
Default Process Execute Type4294967294 (S: Inherit Parent)
Default IPC Create Type0 (General IPC)
Default Group Create Type0 (General Group)
Default Unixsock Create Type4294967289 (*Unknown*)
Boot RoleNo
Req ReauthNo

FD Type Compatibilities of Role 13:

0 (General FD) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
3 (Executables) CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
4 (Libraries) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
7 (Configs) SEARCH
8 (ConfigsUser) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
9 (TempDirs) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
10 (Home) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
11 (HomeAdmin) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
12 (HomeUser) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
13 (Var) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
14 (VarCache) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
17 (VarSpoolMail) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO

DEV Type Compatibilities of Role 13:

0 (General Device) APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL

IPC Type Compatibilities of Role 13:

0 (General IPC) ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK

SCD Type Compatibilities of Role 13:

5 (rlimit) GET_STATUS_DATA MODIFY_SYSTEM_DATA
10 (other) MAP_EXEC
12 (network) GET_STATUS_DATA

USER Type Compatibilities of Role 13:

0 (General User) CHANGE_OWNER GET_STATUS_DATA SEARCH

PROCESS Type Compatibilities of Role 13:

0 (General Process) CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
999999 (Kernel Process) GET_STATUS_DATA TERMINATE

GROUP Type Compatibilities of Role 13:

0 (General Group) GET_STATUS_DATA SEARCH

NETDEV Type Compatibilities of Role 13:

0 (General NETDEV) GET_STATUS_DATA MODIFY_SYSTEM_DATA BIND

NETOBJ Type Compatibilities of Role 13:

0 (General NETOBJ) CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL

Role 14: VnstatdRole_I

Default FD Create Type4294967294 (S: Inherit Parent)
Default User Create Type0 (General User)
Default Process Create Type4294967294 (S: Inherit Parent)
Default Process Chown Type4294967291 (S: Use New Role Def Create)
Default Process Execute Type4294967294 (S: Inherit Parent)
Default IPC Create Type0 (General IPC)
Default Group Create Type0 (General Group)
Default Unixsock Create Type4294967289 (*Unknown*)
Boot RoleNo
Req ReauthNo

FD Type Compatibilities of Role 14:

0 (General FD) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
3 (Executables) CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
4 (Libraries) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
7 (Configs) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
8 (ConfigsUser) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
9 (TempDirs) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
10 (Home) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
11 (HomeAdmin) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
12 (HomeUser) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
13 (Var) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
15 (VarLib) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
17 (VarSpoolMail) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO

DEV Type Compatibilities of Role 14:

0 (General Device) APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL

IPC Type Compatibilities of Role 14:

0 (General IPC) ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK

SCD Type Compatibilities of Role 14:

5 (rlimit) GET_STATUS_DATA MODIFY_SYSTEM_DATA
10 (other) MAP_EXEC
12 (network) GET_STATUS_DATA

USER Type Compatibilities of Role 14:

0 (General User) CHANGE_OWNER GET_STATUS_DATA SEARCH

PROCESS Type Compatibilities of Role 14:

0 (General Process) CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
999999 (Kernel Process) GET_STATUS_DATA TERMINATE

GROUP Type Compatibilities of Role 14:

0 (General Group) GET_STATUS_DATA SEARCH

NETDEV Type Compatibilities of Role 14:

0 (General NETDEV) GET_STATUS_DATA MODIFY_SYSTEM_DATA BIND

NETOBJ Type Compatibilities of Role 14:

0 (General NETOBJ) CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL

Role 15: VnstatdRole_F

Default FD Create Type4294967294 (S: Inherit Parent)
Default User Create Type0 (General User)
Default Process Create Type4294967294 (S: Inherit Parent)
Default Process Chown Type4294967291 (S: Use New Role Def Create)
Default Process Execute Type4294967294 (S: Inherit Parent)
Default IPC Create Type0 (General IPC)
Default Group Create Type0 (General Group)
Default Unixsock Create Type4294967289 (*Unknown*)
Boot RoleNo
Req ReauthNo

FD Type Compatibilities of Role 15:

0 (General FD) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
3 (Executables) CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
4 (Libraries) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
7 (Configs) SEARCH
8 (ConfigsUser) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
9 (TempDirs) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
10 (Home) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
11 (HomeAdmin) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
12 (HomeUser) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
13 (Var) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
17 (VarSpoolMail) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO

DEV Type Compatibilities of Role 15:

0 (General Device) APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL

IPC Type Compatibilities of Role 15:

0 (General IPC) ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK

SCD Type Compatibilities of Role 15:

5 (rlimit) GET_STATUS_DATA MODIFY_SYSTEM_DATA
10 (other) MAP_EXEC
12 (network) GET_STATUS_DATA

USER Type Compatibilities of Role 15:

0 (General User) CHANGE_OWNER GET_STATUS_DATA SEARCH

PROCESS Type Compatibilities of Role 15:

0 (General Process) CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
999999 (Kernel Process) GET_STATUS_DATA TERMINATE

GROUP Type Compatibilities of Role 15:

0 (General Group) GET_STATUS_DATA SEARCH

NETDEV Type Compatibilities of Role 15:

0 (General NETDEV) GET_STATUS_DATA MODIFY_SYSTEM_DATA BIND

NETOBJ Type Compatibilities of Role 15:

0 (General NETOBJ) CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL

Role 16: RklogdRole_I

Default FD Create Type0 (General FD)
Default User Create Type0 (General User)
Default Process Create Type0 (General Process)
Default Process Chown Type0 (General Process)
Default Process Execute Type0 (General Process)
Default IPC Create Type0 (General IPC)
Default Group Create Type0 (General Group)
Default Unixsock Create Type0 (General NETOBJ)
Boot RoleNo
Req ReauthNo

Role 17: RklogdRole_F

Default FD Create Type0 (General FD)
Default User Create Type0 (General User)
Default Process Create Type0 (General Process)
Default Process Chown Type0 (General Process)
Default Process Execute Type0 (General Process)
Default IPC Create Type0 (General IPC)
Default Group Create Type0 (General Group)
Default Unixsock Create Type0 (General NETOBJ)
Boot RoleNo
Req ReauthNo

FD Type Compatibilities of Role 17:

0 (General FD) SEARCH
1 (Security FD) APPEND_OPEN CHANGE_OWNER CREATE DELETE LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA RENAME TRUNCATE WRITE WRITE_OPEN IOCTL LOCK MOVETO
3 (Executables) SEARCH
7 (Configs) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
8 (ConfigsUser) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH

SCD Type Compatibilities of Role 17:

9 (rsbac_log) GET_STATUS_DATA

Role 18: MailRole_I

Default FD Create Type0 (General FD)
Default User Create Type0 (General User)
Default Process Create Type0 (General Process)
Default Process Chown Type0 (General Process)
Default Process Execute Type0 (General Process)
Default IPC Create Type0 (General IPC)
Default Group Create Type0 (General Group)
Default Unixsock Create Type0 (General NETOBJ)
Boot RoleNo
Req ReauthNo

Role 19: MailRole_F

Default FD Create Type0 (General FD)
Default User Create Type0 (General User)
Default Process Create Type0 (General Process)
Default Process Chown Type0 (General Process)
Default Process Execute Type0 (General Process)
Default IPC Create Type0 (General IPC)
Default Group Create Type0 (General Group)
Default Unixsock Create Type0 (General NETOBJ)
Boot RoleNo
Req ReauthNo

FD Type Compatibilities of Role 19:

20 (VarSpoolPostfix) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO

Role 20: NfsRole

Default FD Create Type0 (General FD)
Default User Create Type0 (General User)
Default Process Create Type0 (General Process)
Default Process Chown Type0 (General Process)
Default Process Execute Type0 (General Process)
Default IPC Create Type0 (General IPC)
Default Group Create Type0 (General Group)
Default Unixsock Create Type0 (General NETOBJ)
Boot RoleNo
Req ReauthNo

Role 21: ClamdRole

Default FD Create Type4294967294 (S: Inherit Parent)
Default User Create Type0 (General User)
Default Process Create Type4294967294 (S: Inherit Parent)
Default Process Chown Type4294967291 (S: Use New Role Def Create)
Default Process Execute Type4294967294 (S: Inherit Parent)
Default IPC Create Type0 (General IPC)
Default Group Create Type0 (General Group)
Default Unixsock Create Type4294967289 (*Unknown*)
Boot RoleNo
Req ReauthNo

FD Type Compatibilities of Role 21:

0 (General FD) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
1 (Security FD) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
3 (Executables) CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
4 (Libraries) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
7 (Configs) SEARCH
8 (ConfigsUser) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
9 (TempDirs) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
10 (Home) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
11 (HomeAdmin) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
12 (HomeUser) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
13 (Var) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
15 (VarLib) CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
17 (VarSpoolMail) APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
19 (VarLog) APPEND_OPEN CHANGE_OWNER CREATE DELETE LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA RENAME TRUNCATE WRITE WRITE_OPEN IOCTL LOCK MOVETO

DEV Type Compatibilities of Role 21:

0 (General Device) APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL

IPC Type Compatibilities of Role 21:

0 (General IPC) ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK

SCD Type Compatibilities of Role 21:

5 (rlimit) GET_STATUS_DATA MODIFY_SYSTEM_DATA
10 (other) MAP_EXEC
12 (network) GET_STATUS_DATA

USER Type Compatibilities of Role 21:

0 (General User) CHANGE_OWNER GET_STATUS_DATA SEARCH

PROCESS Type Compatibilities of Role 21:

0 (General Process) CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
999999 (Kernel Process) GET_STATUS_DATA TERMINATE

GROUP Type Compatibilities of Role 21:

0 (General Group) GET_STATUS_DATA SEARCH

NETDEV Type Compatibilities of Role 21:

0 (General NETDEV) GET_STATUS_DATA MODIFY_SYSTEM_DATA BIND

NETOBJ Type Compatibilities of Role 21:

0 (General NETOBJ) CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL

Role 22: FreshclamRole

Default FD Create Type0 (General FD)
Default User Create Type0 (General User)
Default Process Create Type0 (General Process)
Default Process Chown Type0 (General Process)
Default Process Execute Type0 (General Process)
Default IPC Create Type0 (General IPC)
Default Group Create Type0 (General Group)
Default Unixsock Create Type0 (General NETOBJ)
Boot RoleNo
Req ReauthNo

Role 999999: System Boot

Default FD Create Type4294967294 (S: Inherit Parent)
Default User Create Type0 (General User)
Default Process Create Type4294967294 (S: Inherit Parent)
Default Process Chown Type4294967291 (S: Use New Role Def Create)
Default Process Execute Type4294967294 (S: Inherit Parent)
Default IPC Create Type0 (General IPC)
Default Group Create Type0 (General Group)
Default Unixsock Create Type4294967289 (*Unknown*)
Boot RoleYes
Req ReauthNo

FD Type Compatibilities of Role 999999:

0 (General FD) ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
2 (System FD) ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
3 (Executables) ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
5 (SysExecutables) ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
6 (InitScripts) ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO

DEV Type Compatibilities of Role 999999:

0 (General Device) ADD_TO_KERNEL APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL UMOUNT WRITE WRITE_OPEN SEND IOCTL
2 (System Device) ADD_TO_KERNEL APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL UMOUNT WRITE WRITE_OPEN SEND IOCTL

IPC Type Compatibilities of Role 999999:

0 (General IPC) ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK
2 (System IPC) ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK

SCD Type Compatibilities of Role 999999:

0 (time_strucs) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
1 (clock) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
2 (host_id) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
3 (net_id) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
4 (ioports) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
5 (rlimit) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
6 (swap) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
7 (syslog) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
8 (rsbac) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
10 (other) ADD_TO_KERNEL MODIFY_SYSTEM_DATA MOUNT REMOVE_FROM_KERNEL SHUTDOWN UMOUNT MAP_EXEC
12 (network) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
13 (firewall) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
14 (priority) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
15 (sysfs) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
16 (rsbac_remote_lo) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
17 (quota) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
18 (sysctl) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
19 (nfsd) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
20 (ksyms) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
21 (mlock) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
22 (capability) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
23 (kexec) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
24 (videomem) GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE

USER Type Compatibilities of Role 999999:

0 (General User) CHANGE_OWNER GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_ATTRIBUTE SEARCH AUTHENTICATE
1 (Security User) CHANGE_OWNER SEARCH AUTHENTICATE
2 (System User) GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_ATTRIBUTE SEARCH AUTHENTICATE

PROCESS Type Compatibilities of Role 999999:

0 (General Process) CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
2 (System Process) CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
999999 (Kernel Process) CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP

NETDEV Type Compatibilities of Role 999999:

0 (General NETDEV) GET_STATUS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE BIND

NETTEMP Type Compatibilities of Role 999999:

0 (General NETTEMP) READ

NETOBJ Type Compatibilities of Role 999999:

0 (General NETOBJ) CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_ATTRIBUTE WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL


Rights to Types

Rights to 22 FD types

FD Type 0 General FD

RoleNameRights
0General User CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
1Role Admin CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
2System Admin ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
3Auditor APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
4InitRole ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
5RootRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
6LoginRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
7SshdRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
8SyslogRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
9CronRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
10NamedRole_I CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
11NamedRole_F CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
12SquidRole_I CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
13SquidRole_F CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
14VnstatdRole_I CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
15VnstatdRole_F CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
17RklogdRole_F SEARCH
21ClamdRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
999999System Boot ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO

FD Type 1 Security FD

RoleNameRights
1Role Admin APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_ATTRIBUTE MODIFY_PERMISSIONS_DATA READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
17RklogdRole_F APPEND_OPEN CHANGE_OWNER CREATE DELETE LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA RENAME TRUNCATE WRITE WRITE_OPEN IOCTL LOCK MOVETO
21ClamdRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH

FD Type 2 System FD

RoleNameRights
1Role Admin CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
2System Admin ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
4InitRole ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
999999System Boot ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO

FD Type 3 Executables

RoleNameRights
0General User CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
1Role Admin CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
2System Admin ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
3Auditor APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
4InitRole ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
5RootRole CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
6LoginRole CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
7SshdRole CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
8SyslogRole CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
9CronRole CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
10NamedRole_I CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
11NamedRole_F CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
12SquidRole_I CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
13SquidRole_F CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
14VnstatdRole_I CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
15VnstatdRole_F CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
17RklogdRole_F SEARCH
21ClamdRole CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
999999System Boot ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO

FD Type 4 Libraries

RoleNameRights
0General User CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
1Role Admin CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
2System Admin CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
4InitRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
5RootRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
6LoginRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
7SshdRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
8SyslogRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
9CronRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
10NamedRole_I CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
11NamedRole_F CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
12SquidRole_I CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
13SquidRole_F CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
14VnstatdRole_I CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
15VnstatdRole_F CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
21ClamdRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC

FD Type 5 SysExecutables

RoleNameRights
1Role Admin CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
2System Admin ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
4InitRole ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
5RootRole CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC
7SshdRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
999999System Boot ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO

FD Type 6 InitScripts

RoleNameRights
1Role Admin CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH MAP_EXEC ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
2System Admin ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
4InitRole ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
5RootRole CHDIR CLOSE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
999999System Boot ADD_TO_KERNEL APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE EXECUTE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL RENAME SEARCH TRUNCATE UMOUNT WRITE WRITE_OPEN MAP_EXEC LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO

FD Type 7 Configs

RoleNameRights
0General User SEARCH
1Role Admin CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
2System Admin CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
4InitRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
5RootRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
6LoginRole SEARCH
7SshdRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
8SyslogRole SEARCH
9CronRole SEARCH
10NamedRole_I SEARCH
11NamedRole_F SEARCH
12SquidRole_I SEARCH
13SquidRole_F SEARCH
14VnstatdRole_I CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
15VnstatdRole_F SEARCH
17RklogdRole_F CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
21ClamdRole SEARCH

FD Type 8 ConfigsUser

RoleNameRights
0General User CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
1Role Admin CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
2System Admin CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
3Auditor CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
4InitRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
5RootRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
6LoginRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
7SshdRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
8SyslogRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
9CronRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
10NamedRole_I CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
11NamedRole_F CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
12SquidRole_I CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
13SquidRole_F CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
14VnstatdRole_I CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
15VnstatdRole_F CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
17RklogdRole_F CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
21ClamdRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH

FD Type 9 TempDirs

RoleNameRights
0General User APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
1Role Admin APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
5RootRole APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
6LoginRole APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
7SshdRole APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
8SyslogRole APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
9CronRole APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
10NamedRole_I APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
11NamedRole_F APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
12SquidRole_I APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
13SquidRole_F APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
14VnstatdRole_I APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
15VnstatdRole_F APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
21ClamdRole APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO

FD Type 10 Home

RoleNameRights
0General User CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
1Role Admin CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
2System Admin CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
5RootRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
6LoginRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
7SshdRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
8SyslogRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
9CronRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
10NamedRole_I CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
11NamedRole_F CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
12SquidRole_I CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
13SquidRole_F CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
14VnstatdRole_I CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
15VnstatdRole_F CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
21ClamdRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH

FD Type 11 HomeAdmin

RoleNameRights
0General User CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
1Role Admin APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
5RootRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
6LoginRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
7SshdRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
8SyslogRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
9CronRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
10NamedRole_I CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
11NamedRole_F CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
12SquidRole_I CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
13SquidRole_F CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
14VnstatdRole_I CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
15VnstatdRole_F CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
21ClamdRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH

FD Type 12 HomeUser

RoleNameRights
0General User APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
1Role Admin APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
5RootRole APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
6LoginRole APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
7SshdRole APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
8SyslogRole APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
9CronRole APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
10NamedRole_I APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
11NamedRole_F APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
12SquidRole_I APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
13SquidRole_F APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
14VnstatdRole_I APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
15VnstatdRole_F APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
21ClamdRole APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO

FD Type 13 Var

RoleNameRights
0General User APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
1Role Admin CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
2System Admin CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
4InitRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
5RootRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
6LoginRole APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
7SshdRole APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
8SyslogRole APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
9CronRole APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
10NamedRole_I APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
11NamedRole_F APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
12SquidRole_I APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
13SquidRole_F APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
14VnstatdRole_I APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
15VnstatdRole_F APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
21ClamdRole APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO

FD Type 14 VarCache

RoleNameRights
13SquidRole_F APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO

FD Type 15 VarLib

RoleNameRights
14VnstatdRole_I APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
21ClamdRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH

FD Type 16 VarSpool

RoleNameRights

FD Type 17 VarSpoolMail

RoleNameRights
0General User APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
1Role Admin APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
5RootRole APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
6LoginRole APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
7SshdRole APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
8SyslogRole APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
9CronRole APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
10NamedRole_I APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
11NamedRole_F APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
12SquidRole_I APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
13SquidRole_F APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
14VnstatdRole_I APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
15VnstatdRole_F APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
21ClamdRole APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO

FD Type 18 VarSpoolCron

RoleNameRights
5RootRole APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO

FD Type 19 VarLog

RoleNameRights
2System Admin APPEND_OPEN CHANGE_OWNER CREATE DELETE LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA RENAME TRUNCATE WRITE WRITE_OPEN IOCTL LOCK MOVETO
5RootRole CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
7SshdRole APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO
8SyslogRole APPEND_OPEN CHANGE_OWNER CLOSE CREATE DELETE GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA RENAME SEARCH TRUNCATE WRITE WRITE_OPEN IOCTL LOCK MOVETO
11NamedRole_F APPEND_OPEN CHANGE_OWNER CREATE DELETE GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA RENAME TRUNCATE WRITE WRITE_OPEN IOCTL LOCK MOVETO
21ClamdRole APPEND_OPEN CHANGE_OWNER CREATE DELETE LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA RENAME TRUNCATE WRITE WRITE_OPEN IOCTL LOCK MOVETO

FD Type 20 VarSpoolPostfix

RoleNameRights
19MailRole_F APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO

FD Type 21 VarRun

RoleNameRights
1Role Admin CHDIR CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_OPEN SEARCH
7SshdRole APPEND_OPEN CHANGE_OWNER CHDIR CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA LINK_HARD MODIFY_ACCESS_DATA MODIFY_PERMISSIONS_DATA READ READ_WRITE_OPEN READ_OPEN RENAME SEARCH TRUNCATE WRITE WRITE_OPEN LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK MOVETO

Rights to 3 DEV types

DEV Type 0 General Device

RoleNameRights
0General User APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL
1Role Admin APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
2System Admin ADD_TO_KERNEL APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL UMOUNT WRITE WRITE_OPEN SEND IOCTL
3Auditor APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL
4InitRole ADD_TO_KERNEL APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL UMOUNT WRITE WRITE_OPEN SEND IOCTL
5RootRole APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL
6LoginRole APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL
7SshdRole APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL
8SyslogRole APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL
9CronRole APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL
10NamedRole_I APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL
11NamedRole_F APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL
12SquidRole_I APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL
13SquidRole_F APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL
14VnstatdRole_I APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL
15VnstatdRole_F APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL
21ClamdRole APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL
999999System Boot ADD_TO_KERNEL APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL UMOUNT WRITE WRITE_OPEN SEND IOCTL

DEV Type 1 Security Device

RoleNameRights
1Role Admin APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN SEND IOCTL ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT

DEV Type 2 System Device

RoleNameRights
2System Admin ADD_TO_KERNEL APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL UMOUNT WRITE WRITE_OPEN SEND IOCTL
4InitRole ADD_TO_KERNEL APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL UMOUNT WRITE WRITE_OPEN SEND IOCTL
999999System Boot ADD_TO_KERNEL APPEND_OPEN CLOSE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA MOUNT READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN REMOVE_FROM_KERNEL UMOUNT WRITE WRITE_OPEN SEND IOCTL

Rights to 3 IPC types

IPC Type 0 General IPC

RoleNameRights
0General User ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK
1Role Admin ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
2System Admin ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK
3Auditor ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK
4InitRole ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK
5RootRole ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK
6LoginRole ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK
7SshdRole ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK
8SyslogRole ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK
9CronRole ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK
10NamedRole_I ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK
11NamedRole_F ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK
12SquidRole_I ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK
13SquidRole_F ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK
14VnstatdRole_I ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK
15VnstatdRole_F ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK
21ClamdRole ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK
999999System Boot ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK

IPC Type 1 Security IPC

RoleNameRights
1Role Admin ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT

IPC Type 2 System IPC

RoleNameRights
2System Admin ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK
4InitRole ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK
999999System Boot ALTER CHANGE_GROUP CHANGE_OWNER CLOSE CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_ATTRIBUTE READ_WRITE_OPEN READ_OPEN WRITE WRITE_OPEN BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL LOCK

Rights to 26 SCD types

SCD Type 0 time_strucs

RoleNameRights
2System Admin GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
4InitRole GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
999999System Boot GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE

SCD Type 1 clock

RoleNameRights
2System Admin GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
4InitRole GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
999999System Boot GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE

SCD Type 2 host_id

RoleNameRights
2System Admin GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
4InitRole GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
999999System Boot GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE

SCD Type 3 net_id

RoleNameRights
2System Admin GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
4InitRole GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
999999System Boot GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE

SCD Type 4 ioports

RoleNameRights
2System Admin GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
4InitRole GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
999999System Boot GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE

SCD Type 5 rlimit

RoleNameRights
0General User GET_STATUS_DATA MODIFY_SYSTEM_DATA
1Role Admin GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
2System Admin GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
3Auditor GET_STATUS_DATA MODIFY_SYSTEM_DATA
4InitRole GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
5RootRole GET_STATUS_DATA MODIFY_SYSTEM_DATA
6LoginRole GET_STATUS_DATA MODIFY_SYSTEM_DATA
7SshdRole GET_STATUS_DATA MODIFY_SYSTEM_DATA
8SyslogRole GET_STATUS_DATA MODIFY_SYSTEM_DATA
9CronRole GET_STATUS_DATA MODIFY_SYSTEM_DATA
10NamedRole_I GET_STATUS_DATA MODIFY_SYSTEM_DATA
11NamedRole_F GET_STATUS_DATA MODIFY_SYSTEM_DATA
12SquidRole_I GET_STATUS_DATA MODIFY_SYSTEM_DATA
13SquidRole_F GET_STATUS_DATA MODIFY_SYSTEM_DATA
14VnstatdRole_I GET_STATUS_DATA MODIFY_SYSTEM_DATA
15VnstatdRole_F GET_STATUS_DATA MODIFY_SYSTEM_DATA
21ClamdRole GET_STATUS_DATA MODIFY_SYSTEM_DATA
999999System Boot GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE

SCD Type 6 swap

RoleNameRights
2System Admin GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
4InitRole GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
999999System Boot GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE

SCD Type 7 syslog

RoleNameRights
2System Admin GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
4InitRole GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
999999System Boot GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE

SCD Type 8 rsbac

RoleNameRights
1Role Admin GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
2System Admin GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
4InitRole GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
999999System Boot GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE

SCD Type 9 rsbac_log

RoleNameRights
1Role Admin GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
3Auditor GET_STATUS_DATA MODIFY_SYSTEM_DATA
17RklogdRole_F GET_STATUS_DATA

SCD Type 10 other

RoleNameRights
0General User MAP_EXEC
1Role Admin MODIFY_PERMISSIONS_DATA SWITCH_LOG SWITCH_MODULE MAP_EXEC ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
2System Admin ADD_TO_KERNEL MODIFY_SYSTEM_DATA MOUNT REMOVE_FROM_KERNEL SHUTDOWN UMOUNT MAP_EXEC
3Auditor MAP_EXEC
4InitRole ADD_TO_KERNEL MODIFY_SYSTEM_DATA MOUNT REMOVE_FROM_KERNEL SHUTDOWN UMOUNT MAP_EXEC
5RootRole MAP_EXEC
6LoginRole MAP_EXEC
7SshdRole MAP_EXEC
8SyslogRole MAP_EXEC
9CronRole MAP_EXEC
10NamedRole_I MAP_EXEC
11NamedRole_F MAP_EXEC
12SquidRole_I MAP_EXEC
13SquidRole_F MAP_EXEC
14VnstatdRole_I MAP_EXEC
15VnstatdRole_F MAP_EXEC
21ClamdRole MAP_EXEC
999999System Boot ADD_TO_KERNEL MODIFY_SYSTEM_DATA MOUNT REMOVE_FROM_KERNEL SHUTDOWN UMOUNT MAP_EXEC

SCD Type 11 kmem

RoleNameRights

SCD Type 12 network

RoleNameRights
0General User GET_STATUS_DATA
1Role Admin GET_STATUS_DATA ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
2System Admin GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
3Auditor GET_STATUS_DATA
4InitRole GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
5RootRole GET_STATUS_DATA
6LoginRole GET_STATUS_DATA
7SshdRole GET_STATUS_DATA
8SyslogRole GET_STATUS_DATA
9CronRole GET_STATUS_DATA
10NamedRole_I GET_STATUS_DATA
11NamedRole_F GET_STATUS_DATA
12SquidRole_I GET_STATUS_DATA
13SquidRole_F GET_STATUS_DATA
14VnstatdRole_I GET_STATUS_DATA
15VnstatdRole_F GET_STATUS_DATA
21ClamdRole GET_STATUS_DATA
999999System Boot GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE

SCD Type 13 firewall

RoleNameRights
1Role Admin GET_STATUS_DATA ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
2System Admin GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
4InitRole GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
999999System Boot GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE

SCD Type 14 priority

RoleNameRights
2System Admin GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
4InitRole GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
999999System Boot GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE

SCD Type 15 sysfs

RoleNameRights
1Role Admin GET_STATUS_DATA ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
2System Admin GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
4InitRole GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
999999System Boot GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE

SCD Type 16 rsbac_remote_lo

RoleNameRights
2System Admin GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
4InitRole GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
999999System Boot GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE

SCD Type 17 quota

RoleNameRights
2System Admin GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
4InitRole GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
999999System Boot GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE

SCD Type 18 sysctl

RoleNameRights
2System Admin GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
4InitRole GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
999999System Boot GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE

SCD Type 19 nfsd

RoleNameRights
2System Admin GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
4InitRole GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
999999System Boot GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE

SCD Type 20 ksyms

RoleNameRights
2System Admin GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
4InitRole GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
999999System Boot GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE

SCD Type 21 mlock

RoleNameRights
2System Admin GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
4InitRole GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
999999System Boot GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE

SCD Type 22 capability

RoleNameRights
2System Admin GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
4InitRole GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
999999System Boot GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE

SCD Type 23 kexec

RoleNameRights
2System Admin GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
4InitRole GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
999999System Boot GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE

SCD Type 24 videomem

RoleNameRights
2System Admin GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
4InitRole GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE
999999System Boot GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE

SCD Type 32 auth_administra

RoleNameRights
1Role Admin GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE WRITE ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT

Rights to 3 USER types

USER Type 0 General User

RoleNameRights
0General User CHANGE_OWNER GET_STATUS_DATA SEARCH
1Role Admin CHANGE_GROUP CHANGE_OWNER CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_PERMISSIONS_DATA READ READ_ATTRIBUTE RENAME SEARCH WRITE AUTHENTICATE ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
2System Admin CHANGE_OWNER GET_STATUS_DATA SEARCH AUTHENTICATE
3Auditor CHANGE_OWNER GET_STATUS_DATA SEARCH
4InitRole CHANGE_OWNER GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_ATTRIBUTE SEARCH AUTHENTICATE
5RootRole CHANGE_OWNER GET_STATUS_DATA SEARCH
6LoginRole CHANGE_OWNER GET_STATUS_DATA SEARCH
7SshdRole CHANGE_OWNER GET_STATUS_DATA SEARCH
8SyslogRole CHANGE_OWNER GET_STATUS_DATA SEARCH
9CronRole CHANGE_OWNER GET_STATUS_DATA SEARCH
10NamedRole_I CHANGE_OWNER GET_STATUS_DATA SEARCH
11NamedRole_F CHANGE_OWNER GET_STATUS_DATA SEARCH
12SquidRole_I CHANGE_OWNER GET_STATUS_DATA SEARCH
13SquidRole_F CHANGE_OWNER GET_STATUS_DATA SEARCH
14VnstatdRole_I CHANGE_OWNER GET_STATUS_DATA SEARCH
15VnstatdRole_F CHANGE_OWNER GET_STATUS_DATA SEARCH
21ClamdRole CHANGE_OWNER GET_STATUS_DATA SEARCH
999999System Boot CHANGE_OWNER GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_ATTRIBUTE SEARCH AUTHENTICATE

USER Type 1 Security User

RoleNameRights
1Role Admin CHANGE_GROUP CHANGE_OWNER CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_PERMISSIONS_DATA READ READ_ATTRIBUTE RENAME SEARCH WRITE AUTHENTICATE ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
2System Admin SEARCH AUTHENTICATE
4InitRole CHANGE_OWNER SEARCH AUTHENTICATE
999999System Boot CHANGE_OWNER SEARCH AUTHENTICATE

USER Type 2 System User

RoleNameRights
1Role Admin CHANGE_GROUP CHANGE_OWNER CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_PERMISSIONS_DATA READ READ_ATTRIBUTE RENAME SEARCH WRITE AUTHENTICATE ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
2System Admin GET_STATUS_DATA SEARCH AUTHENTICATE
4InitRole GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_ATTRIBUTE SEARCH AUTHENTICATE
999999System Boot GET_PERMISSIONS_DATA GET_STATUS_DATA READ READ_ATTRIBUTE SEARCH AUTHENTICATE

Rights to 4 PROCESS types

PROCESS Type 0 General Process

RoleNameRights
0General User CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
1Role Admin CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_SYSTEM_DATA READ_ATTRIBUTE SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
2System Admin CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
3Auditor CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
4InitRole CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
5RootRole CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
6LoginRole CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
7SshdRole CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
8SyslogRole CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
9CronRole CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
10NamedRole_I CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
11NamedRole_F CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
12SquidRole_I CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
13SquidRole_F CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
14VnstatdRole_I CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
15VnstatdRole_F CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
21ClamdRole CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
999999System Boot CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP

PROCESS Type 1 Security Proc

RoleNameRights
1Role Admin CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_SYSTEM_DATA READ_ATTRIBUTE SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT

PROCESS Type 2 System Process

RoleNameRights
2System Admin CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
4InitRole CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
999999System Boot CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP

PROCESS Type 999999 Kernel Process

RoleNameRights
0General User GET_STATUS_DATA TERMINATE
1Role Admin CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_SYSTEM_DATA READ_ATTRIBUTE SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
2System Admin CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
3Auditor CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
4InitRole CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP
5RootRole GET_STATUS_DATA TERMINATE
6LoginRole GET_STATUS_DATA TERMINATE
7SshdRole GET_STATUS_DATA TERMINATE
8SyslogRole GET_STATUS_DATA TERMINATE
9CronRole GET_STATUS_DATA TERMINATE
10NamedRole_I GET_STATUS_DATA TERMINATE
11NamedRole_F GET_STATUS_DATA TERMINATE
12SquidRole_I GET_STATUS_DATA TERMINATE
13SquidRole_F GET_STATUS_DATA TERMINATE
14VnstatdRole_I GET_STATUS_DATA TERMINATE
15VnstatdRole_F GET_STATUS_DATA TERMINATE
21ClamdRole GET_STATUS_DATA TERMINATE
999999System Boot CHANGE_GROUP CHANGE_OWNER CLONE CREATE GET_STATUS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE SEND_SIGNAL TERMINATE TRACE CHANGE_DAC_EFF_OWNER CHANGE_DAC_FS_OWNER CHANGE_DAC_EFF_GROUP CHANGE_DAC_FS_GROUP

Rights to 1 GROUP types

GROUP Type 0 General Group

RoleNameRights
0General User GET_STATUS_DATA SEARCH
1Role Admin CREATE DELETE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_PERMISSIONS_DATA READ READ_ATTRIBUTE RENAME SEARCH WRITE ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
2System Admin GET_STATUS_DATA READ SEARCH
3Auditor GET_STATUS_DATA SEARCH
5RootRole GET_STATUS_DATA SEARCH
6LoginRole GET_STATUS_DATA SEARCH
7SshdRole GET_STATUS_DATA SEARCH
8SyslogRole GET_STATUS_DATA SEARCH
9CronRole GET_STATUS_DATA SEARCH
10NamedRole_I GET_STATUS_DATA SEARCH
11NamedRole_F GET_STATUS_DATA SEARCH
12SquidRole_I GET_STATUS_DATA SEARCH
13SquidRole_F GET_STATUS_DATA SEARCH
14VnstatdRole_I GET_STATUS_DATA SEARCH
15VnstatdRole_F GET_STATUS_DATA SEARCH
21ClamdRole GET_STATUS_DATA SEARCH

Rights to 3 NETDEV types

NETDEV Type 0 General NETDEV

RoleNameRights
0General User GET_STATUS_DATA MODIFY_SYSTEM_DATA BIND
1Role Admin GET_STATUS_DATA MODIFY_ATTRIBUTE READ_ATTRIBUTE ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
2System Admin GET_STATUS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE BIND
3Auditor GET_STATUS_DATA MODIFY_SYSTEM_DATA BIND
4InitRole GET_STATUS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE BIND
5RootRole GET_STATUS_DATA MODIFY_SYSTEM_DATA BIND
6LoginRole GET_STATUS_DATA MODIFY_SYSTEM_DATA BIND
7SshdRole GET_STATUS_DATA MODIFY_SYSTEM_DATA BIND
8SyslogRole GET_STATUS_DATA MODIFY_SYSTEM_DATA BIND
9CronRole GET_STATUS_DATA MODIFY_SYSTEM_DATA BIND
10NamedRole_I GET_STATUS_DATA MODIFY_SYSTEM_DATA BIND
11NamedRole_F GET_STATUS_DATA MODIFY_SYSTEM_DATA BIND
12SquidRole_I GET_STATUS_DATA MODIFY_SYSTEM_DATA BIND
13SquidRole_F GET_STATUS_DATA MODIFY_SYSTEM_DATA BIND
14VnstatdRole_I GET_STATUS_DATA MODIFY_SYSTEM_DATA BIND
15VnstatdRole_F GET_STATUS_DATA MODIFY_SYSTEM_DATA BIND
21ClamdRole GET_STATUS_DATA MODIFY_SYSTEM_DATA BIND
999999System Boot GET_STATUS_DATA MODIFY_SYSTEM_DATA READ_ATTRIBUTE BIND

NETDEV Type 1 Security NETDEV

RoleNameRights
1Role Admin GET_STATUS_DATA MODIFY_ATTRIBUTE READ_ATTRIBUTE ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT

NETDEV Type 2 System NETDEV

RoleNameRights
1Role Admin GET_STATUS_DATA MODIFY_ATTRIBUTE READ_ATTRIBUTE ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT

Rights to 3 NETTEMP types

NETTEMP Type 0 General NETTEMP

RoleNameRights
1Role Admin CREATE DELETE MODIFY_ATTRIBUTE READ READ_ATTRIBUTE WRITE ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
2System Admin READ
4InitRole READ
999999System Boot READ

NETTEMP Type 1 Securit NETTEMP

RoleNameRights
1Role Admin CREATE DELETE MODIFY_ATTRIBUTE READ READ_ATTRIBUTE WRITE ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT

NETTEMP Type 2 System NETTEMP

RoleNameRights

Rights to 3 NETOBJ types

NETOBJ Type 0 General NETOBJ

RoleNameRights
0General User CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL
1Role Admin CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_ATTRIBUTE MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_ATTRIBUTE WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL ADMIN ASSIGN ACCESS_CONTROL SUPERVISOR MODIFY_AUTH CHANGE_AUTHED_OWNER SELECT
2System Admin CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_ATTRIBUTE WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL
3Auditor CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL
4InitRole CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_ATTRIBUTE WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL
5RootRole CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL
6LoginRole CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL
7SshdRole CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL
8SyslogRole CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL
9CronRole CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL
10NamedRole_I CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL
11NamedRole_F CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL
12SquidRole_I CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL
13SquidRole_F CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL
14VnstatdRole_I CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL
15VnstatdRole_F CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL
21ClamdRole CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL
999999System Boot CLOSE CREATE GET_PERMISSIONS_DATA GET_STATUS_DATA MODIFY_PERMISSIONS_DATA MODIFY_SYSTEM_DATA READ READ_ATTRIBUTE WRITE BIND LISTEN ACCEPT CONNECT SEND RECEIVE NET_SHUTDOWN IOCTL

NETOBJ Type 1 Security NETOBJ

RoleNameRights

NETOBJ Type 2 System NETOBJ

RoleNameRights

RSBAC 1.4.7 RC Configuration - Jump to top