Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- # Last Modified: Sat Jul 20 11:54:32 2013
- # Author: Jamie Strandboge <[email protected]>
- #include <tunables/global>
- /usr/sbin/tcpdump {
- #include <abstractions/base>
- #include <abstractions/nameservice>
- #include <abstractions/user-tmp>
- #include <local/usr.sbin.tcpdump>
- capability dac_override,
- capability net_admin,
- capability net_raw,
- capability setgid,
- capability setuid,
- capability sys_module,
- network packet,
- network raw,
- audit deny @{HOME}/.* mrwlk,
- audit deny @{HOME}/.*/ rw,
- audit deny @{HOME}/.*/** mrwlk,
- audit deny @{HOME}/bin/ rw,
- audit deny @{HOME}/bin/** mrwlk,
- /**.[pP][cC][aA][pP] rw,
- /bin/bzip2 rix,
- /bin/gzip rix,
- /dev/bus/usb/ r,
- /dev/bus/usb/** r,
- /dev/bus/usb/**/[0-9]* w,
- /dev/usbmon* r,
- /etc/ethers r,
- /sys/bus/usb/devices/ r,
- /sys/class/net/ r,
- /sys/devices/**/net/* r,
- /usr/sbin/tcpdump r,
- /var/log/snort/*log* r,
- owner @{HOME}/ r,
- owner @{HOME}/** rw,
- @{PROC}/[0-9]*/net/dev r,
- @{PROC}/bus/usb/ r,
- @{PROC}/bus/usb/** r,
- }
Add Comment
Please, Sign In to add comment