Policy for incus
false
Allow incusd to mount filesystems inside lxc containers that might be required by some legacy init systems.
All of the rules required to administrate a incus environment.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
| role |
Role allowed access. |
Associated the specified domain to be a domain which is capable of operating as a container domain which can be controlled by incus.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |
Execute incus CLI in the incus CLI domain.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed to transition. |
Execute incus CLI in the incus CLI user domain.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed to transition. |
Make incusd executable files an entrypoint for the specified domain.
| Parameter: | Description: |
|---|---|
| domain |
The domain for which incusd_exec_t is an entrypoint. |
Execute incus CLI in the incus CLI domain, and allow the specified role the incus CLI domain.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed to transition. |
| role |
The role to be allowed the incus domain. |
Execute incus CLI in the incus CLI user domain, and allow the specified role the incus CLI user domain.
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed to transition. |
| role |
The role to be allowed the incus user domain. |
Connect to the incus daemon
| Parameter: | Description: |
|---|---|
| domain |
Domain allowed access. |