Syntax-Kamelon
view release on metacpan or search on metacpan
lib/Syntax/Kamelon/XML/apparmor.xml view on Meta::CPAN
<item>profile</item>
<item>hat</item>
</list>
<list name="profile_options">
<item>flags</item>
</list>
<list name="profile_flags">
<item>audit</item>
<item>complain</item>
<item>enforce</item>
<item>mediate_deleted</item>
<item>attach_disconnected</item>
<item>chroot_relative</item>
</list>
<!-- Rule Qualifiers -->
<list name="access_types">
<item>allow</item>
<item>deny</item>
</list>
<list name="qualifiers">
<item>audit</item>
<!-- Not currently supported: quiet, kill, nokill -->
</list>
<!-- Rule Names.
NOTE: Each rule name is a keyword in separate lists, since each
has a different context and for a correct delimitation of the words. -->
<list name="rules">
<item>set</item>
</list>
<list name="rules_other">
<item>alias</item>
</list>
<list name="rule_name_file">
<item>owner</item>
<item>file</item>
</list>
<list name="rule_name_capability"><item>capability</item></list>
<list name="rule_name_network"><item>network</item></list>
<list name="rule_name_mount"><item>mount</item></list>
<list name="rule_name_remount"><item>remount</item></list>
<list name="rule_name_unmount"><item>umount</item></list>
<list name="rule_name_pivotroot"><item>pivot_root</item></list>
<list name="rule_name_ptrace"><item>ptrace</item></list>
<list name="rule_name_signal"><item>signal</item></list>
<list name="rule_name_dbus"><item>dbus</item></list>
<list name="rule_name_unix"><item>unix</item></list>
<list name="rule_name_link"><item>link</item></list>
<list name="rule_name_changeprofile"><item>change_profile</item></list>
<list name="rule_name_rlimit"><item>rlimit</item></list>
<!-- Capabilities, Capability Rule.
Lowercase capability name without 'CAP_' prefix.
http://man7.org/linux/man-pages/man7/capabilities.7.html -->
<list name="rule_capability">
<item>audit_control</item>
<item>audit_read</item>
<item>audit_write</item>
<item>block_suspend</item>
<item>chown</item>
<item>dac_override</item>
<item>dac_read_search</item>
<item>fowner</item>
<item>fsetid</item>
<item>ipc_lock</item>
<item>ipc_owner</item>
<item>kill</item>
<item>lease</item>
<item>linux_immutable</item>
<item>mac_admin</item>
<item>mac_override</item>
<item>mknod</item>
<item>net_admin</item>
<item>net_bind_service</item>
<item>net_broadcast</item>
<item>net_raw</item>
<item>setgid</item>
<item>setfcap</item>
<item>setpcap</item>
<item>setuid</item>
<item>sys_admin</item>
<item>sys_boot</item>
<item>sys_chroot</item>
<item>sys_module</item>
<item>sys_nice</item>
<item>sys_pacct</item>
<item>sys_ptrace</item>
<item>sys_rawio</item>
<item>sys_resource</item>
<item>sys_time</item>
<item>sys_tty_config</item>
<item>syslog</item>
<item>wake_alarm</item>
</list>
<!-- Network Rule -->
<list name="rule_network">
<!-- Domain.
Also: unix -->
<item>inet</item>
<item>ax25</item>
<item>ipx</item>
<item>appletalk</item>
<item>netrom</item>
<item>bridge</item>
<item>atmpvc</item>
<item>x25</item>
<item>inet6</item>
<item>rose</item>
<item>netbeui</item>
<item>security</item>
<item>key</item>
<item>packet</item>
<item>ash</item>
<item>econet</item>
<item>atmsvc</item>
<item>sna</item>
<item>irda</item>
<item>pppox</item>
<item>wanpipe</item>
( run in 0.715 second using v1.01-cache-2.11-cpan-5511b514fd6 )