Syntax-Kamelon

 view release on metacpan or  search on metacpan

lib/Syntax/Kamelon/XML/apparmor.xml  view on Meta::CPAN

			<item>profile</item>
			<item>hat</item>
		</list>
		<list name="profile_options">
			<item>flags</item>
		</list>
		<list name="profile_flags">
			<item>audit</item>
			<item>complain</item>
			<item>enforce</item>
			<item>mediate_deleted</item>
			<item>attach_disconnected</item>
			<item>chroot_relative</item>
		</list>

		<!-- Rule Qualifiers -->
		<list name="access_types">
			<item>allow</item>
			<item>deny</item>
		</list>
		<list name="qualifiers">
			<item>audit</item>
			<!-- Not currently supported: quiet, kill, nokill -->
		</list>

		<!-- Rule Names.
		     NOTE: Each rule name is a keyword in separate lists, since each
		     has a different context and for a correct delimitation of the words. -->
		<list name="rules">
			<item>set</item>
		</list>
		<list name="rules_other">
			<item>alias</item>
		</list>
		<list name="rule_name_file">
			<item>owner</item>
			<item>file</item>
		</list>
		<list name="rule_name_capability"><item>capability</item></list>
		<list name="rule_name_network"><item>network</item></list>
		<list name="rule_name_mount"><item>mount</item></list>
		<list name="rule_name_remount"><item>remount</item></list>
		<list name="rule_name_unmount"><item>umount</item></list>
		<list name="rule_name_pivotroot"><item>pivot_root</item></list>
		<list name="rule_name_ptrace"><item>ptrace</item></list>
		<list name="rule_name_signal"><item>signal</item></list>
		<list name="rule_name_dbus"><item>dbus</item></list>
		<list name="rule_name_unix"><item>unix</item></list>
		<list name="rule_name_link"><item>link</item></list>
		<list name="rule_name_changeprofile"><item>change_profile</item></list>
		<list name="rule_name_rlimit"><item>rlimit</item></list>

		<!-- Capabilities, Capability Rule.
		     Lowercase capability name without 'CAP_' prefix.
		     http://man7.org/linux/man-pages/man7/capabilities.7.html -->
		<list name="rule_capability">
			<item>audit_control</item>
			<item>audit_read</item>
			<item>audit_write</item>
			<item>block_suspend</item>
			<item>chown</item>
			<item>dac_override</item>
			<item>dac_read_search</item>
			<item>fowner</item>
			<item>fsetid</item>
			<item>ipc_lock</item>
			<item>ipc_owner</item>
			<item>kill</item>
			<item>lease</item>
			<item>linux_immutable</item>
			<item>mac_admin</item>
			<item>mac_override</item>
			<item>mknod</item>
			<item>net_admin</item>
			<item>net_bind_service</item>
			<item>net_broadcast</item>
			<item>net_raw</item>
			<item>setgid</item>
			<item>setfcap</item>
			<item>setpcap</item>
			<item>setuid</item>
			<item>sys_admin</item>
			<item>sys_boot</item>
			<item>sys_chroot</item>
			<item>sys_module</item>
			<item>sys_nice</item>
			<item>sys_pacct</item>
			<item>sys_ptrace</item>
			<item>sys_rawio</item>
			<item>sys_resource</item>
			<item>sys_time</item>
			<item>sys_tty_config</item>
			<item>syslog</item>
			<item>wake_alarm</item>
		</list>

		<!-- Network Rule -->
		<list name="rule_network">
			<!-- Domain.
				 Also: unix -->
			<item>inet</item>
			<item>ax25</item>
			<item>ipx</item>
			<item>appletalk</item>
			<item>netrom</item>
			<item>bridge</item>
			<item>atmpvc</item>
			<item>x25</item>
			<item>inet6</item>
			<item>rose</item>
			<item>netbeui</item>
			<item>security</item>
			<item>key</item>
			<item>packet</item>
			<item>ash</item>
			<item>econet</item>
			<item>atmsvc</item>
			<item>sna</item>
			<item>irda</item>
			<item>pppox</item>
			<item>wanpipe</item>



( run in 0.715 second using v1.01-cache-2.11-cpan-5511b514fd6 )