早間義博
2011-11-08 01:52:07 UTC
$BAa4V$G$9!#(B
tomoyo-tools-2.4.0_p20110929 $B$r;HMQ$7$F$$$^$9!#(B
$B7GBj$N(Btomoyo-sortpolicy $B$N5!G=$G$9$,(B
$B!V(Btomoyo-sortpolicy $B=hM}A0!W(B
$B$N$h$&$KF10l%I%a%$%s$,(B2$B0J>e$"$k(B domain_policy.conf $B$r(B
tomoyo-sortpolicy $B$GJB$SBX$($?>l9g(B
$B!V(Btomoyo-sortpolicy $B=hM}8e!W(B
$B$N$h$&$K(B
(1) $BF1$8%I%a%$%s$,$"$k>l9g$O0l$D$N%I%a%$%s$@$1$,;D$k!#(B
(2) $B>e5-$N>l9g!"F10l$N%I%a%$%s$KB0$9$k%I%a%$%s%G!<%?$O;D$5$l$k0l$D(B
$B$N%I%a%$%s$K=8$a$i$l$k!#(B
$B$^$?!"0lHLE*$K!"(B
(3) $BF10l%I%a%$%sFb$G$O=EJ#$9$kDj5A$O0l$D$@$1;D$7!"B>$O:o=|$5$l$k!#(B
(4) $BB>$***@_Dj$KJq4^$5$l$k$HH=CG$5$l$?%G!<%?$O:o=|$5$l$k!#(B
$B$H9M$($FNI$$$G$9$+!#(B
tomoyo-sortpolicy $B=hM}A0(B
---------------------------- $B$3$3$+$i(B ---------------------------
<kernel> /usr/local/bin/mycommand
file read /etc/passwd
file read /var/tmp/\*
.
.
<kernel> /usr/local/bin/mycommand
file read /tmp/\*
file read /var/tmp/mycommand.tmp
---------------------------- $B$3$3$^$G(B ---------------------------
tomoyo-sortpolicy $B=hM}8e(B
---------------------------- $B$3$3$+$i(B ---------------------------
<kernel> /usr/local/bin/mycommand
file read /etc/passwd
file read /var/tmp/\*
file read /tmp/\*
.
.
---------------------------- $B$3$3$^$G(B ---------------------------
-- $BAa4V(B
tomoyo-tools-2.4.0_p20110929 $B$r;HMQ$7$F$$$^$9!#(B
$B7GBj$N(Btomoyo-sortpolicy $B$N5!G=$G$9$,(B
$B!V(Btomoyo-sortpolicy $B=hM}A0!W(B
$B$N$h$&$KF10l%I%a%$%s$,(B2$B0J>e$"$k(B domain_policy.conf $B$r(B
tomoyo-sortpolicy $B$GJB$SBX$($?>l9g(B
$B!V(Btomoyo-sortpolicy $B=hM}8e!W(B
$B$N$h$&$K(B
(1) $BF1$8%I%a%$%s$,$"$k>l9g$O0l$D$N%I%a%$%s$@$1$,;D$k!#(B
(2) $B>e5-$N>l9g!"F10l$N%I%a%$%s$KB0$9$k%I%a%$%s%G!<%?$O;D$5$l$k0l$D(B
$B$N%I%a%$%s$K=8$a$i$l$k!#(B
$B$^$?!"0lHLE*$K!"(B
(3) $BF10l%I%a%$%sFb$G$O=EJ#$9$kDj5A$O0l$D$@$1;D$7!"B>$O:o=|$5$l$k!#(B
(4) $BB>$***@_Dj$KJq4^$5$l$k$HH=CG$5$l$?%G!<%?$O:o=|$5$l$k!#(B
$B$H9M$($FNI$$$G$9$+!#(B
tomoyo-sortpolicy $B=hM}A0(B
---------------------------- $B$3$3$+$i(B ---------------------------
<kernel> /usr/local/bin/mycommand
file read /etc/passwd
file read /var/tmp/\*
.
.
<kernel> /usr/local/bin/mycommand
file read /tmp/\*
file read /var/tmp/mycommand.tmp
---------------------------- $B$3$3$^$G(B ---------------------------
tomoyo-sortpolicy $B=hM}8e(B
---------------------------- $B$3$3$+$i(B ---------------------------
<kernel> /usr/local/bin/mycommand
file read /etc/passwd
file read /var/tmp/\*
file read /tmp/\*
.
.
---------------------------- $B$3$3$^$G(B ---------------------------
-- $BAa4V(B