| | | | |
| A |
| |
| | abbreviations in names ( ) |
| |
| | access |
| | | checks |
| | | | executing a file ( ) |
| | | | IPC files ( ) |
| | | | mapped memory ( ) |
| | | | MLDs ( ) |
| | | | network ( ) ( ) |
| | | | opening a file ( ) |
| | | | pipes ( ) ( ) |
| | | | process tracing ( ) |
| | | | processes ( ) |
| | | | PTYs ( ) |
| | | | signals ( ) |
| | | | SLDs ( ) |
| | | | sockets ( ) |
| | | | System V IPC ( ) ( ) |
| | | | TLI ( ) |
| | | | writing to a file ( ) |
| | | | X Window System ( ) |
| | | discretionary operations ( ) |
| | | file labels ( ) |
| | | file privileges ( ) |
| | | file systems |
| | | | code examples ( ) |
| | | | privileges ( ) |
| | | | security policy ( ) |
| | | guidelines for labels ( ) |
| | | mandatory operations ( ) |
| | | multilevel port connections ( ) |
| | | protection ( ) |
| |
| | accreditation ranges |
| | | checking ( ) ( ) |
| | | networks ( ) |
| | | structures ( ) |
| |
| | ACLs, information on ( ) |
| |
| | actions |
| | | assigning inheritable privileges ( ) |
| | | creating ( ) |
| |
| | ADMIN_HIGH label |
| | | defined ( ) |
| | | initialize to ( ) |
| | | running applications ( ) |
| |
| | ADMIN_LOW label |
| | | defined ( ) |
| | | initialize to ( ) |
| | | running applications ( ) |
| |
| | adorned pathnames |
| | | described ( ) |
| | | translating ( ) |
| |
| | adornfc routine |
| | | code example ( ) |
| | | declaration ( ) |
| |
| | algorithms, process privileges ( ) |
| |
| | allowed privileges |
| | | defined ( ) |
| | | on file systems ( ) |
| | | set to none during write ( ) |
| | | turning off ( ) |
| |
| | APIs |
| | | declarations ( ) |
| | | list of types ( ) ( ) |
| | | security policy on man pages ( ) |
| |
| | application auditing |
| | | API declarations ( ) |
| | | argument information ( ) |
| | | audit trail ( ) |
| | | command line arguments ( ) |
| | | control commands ( ) |
| | | creating audit records ( ) |
| | | creating parallel audit records ( ) |
| | | described ( ) |
| | | event definition numbers ( ) |
| | | invalid call ( ) |
| | | IPC identifier ( ) |
| | | preselection mask ( ) |
| | | privilege sets ( ) |
| | | privileged tasks ( ) ( ) |
| | | process preselection mask ( ) |
| | | queueing record information ( ) |
| | | return token ( ) |
| | | return values ( ) |
| | | save area ( ) |
| | | sensitivity label ( ) |
| | | server area ( ) |
| | | subject token ( ) |
| | | terminator command ( ) |
| | | token commands ( ) |
| | | valid call ( ) |
| |
| | applications |
| | | administrative ( ) |
| | | integration ( ) |
| | | MLDs ( ) |
| | | testing and debugging ( ) |
| | | user ( ) |
| |
| | atoms, predefined ( ) |
| |
| | audit_class file |
| | | application auditing ( ) |
| | | creating class ( ) |
| |
| | audit classes |
| | | process preselection mask ( ) |
| | | third-party ( ) |
| |
| | audit_control file |
| | | application auditing ( ) |
| | | process preselection mask ( ) |
| |
| | audit_event file |
| | | application auditing ( ) |
| | | creating event ( ) |
| |
| | audit events |
| | | third-party ( ) |
| | | viewing ( ) |
| |
| | audit records |
| | | creating in an application ( ) |
| | | minimum ( ) |
| |
| | audit tokens |
| | | return token ( ) |
| | | subject token structure ( ) |
| |
| | auditid field ( ) |
| |
| | auditing |
| | | preselection mask |
| | | | classes on file systems ( ) |
| | | public files and directories ( ) |
| |
| | auditwrite routine |
| | | code examples ( ) ( ) ( ) |
| | | declaration ( ) |
| | | invalid call ( ) |
| | | valid call ( ) |
| |
| | authorizations |
| | | and privileges ( ) ( ) |
| | | Label builder ( ) |
| | | when to check ( ) |
| |
| | AW_ARG token command ( ) |
| |
| | AW_DEFAULTRD token command ( ) |
| |
| | AW_DISCARDRD token command ( ) |
| |
| | AW_END terminator command ( ) |
| |
| | AW_EVENT token command ( ) |
| |
| | AW_EXEC_ARGS token command ( ) |
| |
| | AW_FLUSH token command ( ) |
| |
| | AW_GETRD token command ( ) |
| |
| | AW_IPC token command ( ) |
| |
| | AW_NOPRESELECT token command ( ) |
| |
| | AW_NOQUEUE token command ( ) |
| |
| | AW_NOSAVE token command ( ) |
| |
| | AW_NOSERVER token command ( ) |
| |
| | AW_PATH token command ( ) |
| |
| | AW_PRESELECT token command ( ) |
| |
| | AW_PRIVILEGE token command ( ) |
| |
| | AW_QUEUE token command ( ) |
| |
| | AW_RETURN token command ( ) ( ) |
| |
| | AW_SAVERD token command ( ) |
| |
| | AW_SERVER token command ( ) |
| |
| | AW_SLABEL token command ( ) ( ) |
| |
| | AW_SUBJECT token command ( ) |
| |
| | AW_TEXT token command ( ) |
| |
| | AW_USERD token command ( ) |