Policy for RootlessKit
Execute rootlesskit in the rootlesskit domain.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed to transition. |
Execute rootlesskit in the caller domain.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
Execute rootlesskit in the rootlesskit domain, and allow the specified role the rootlesskit domain.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed to transition. |
| role |
The role to be allowed the rootlesskit domain. |
Role access for rootlesskit.
| Parameter: | Description: |
|---|---|
| role_prefix |
The prefix of the user role (e.g., user is the prefix for user_r). |
| user_domain |
User domain for the role. |
| user_exec_domain |
User exec domain for execute and transition access. |
| role |
Role allowed access. |