/usr/lib64/python3.6/site-packages/setools
NameSizeModeActions
diff/-0755rm
__pycache__/-0755rm
boolquery.py22390644editdlrm
boundsquery.py24060644editdlrm
categoryquery.py19220644editdlrm
commonquery.py21640644editdlrm
constraintquery.py56340644editdlrm
defaultquery.py28650644editdlrm
descriptors.py76500644editdlrm
devicetreeconquery.py27880644editdlrm
dta.py219180644editdlrm
exception.py61090644editdlrm
fsusequery.py34370644editdlrm
genfsconquery.py37700644editdlrm
ibendportconquery.py36080644editdlrm
ibpkeyconquery.py53460644editdlrm
infoflow.py149390644editdlrm
initsidquery.py28600644editdlrm
iomemconquery.py45440644editdlrm
ioportconquery.py45670644editdlrm
mixins.py73120644editdlrm
mlsrulequery.py47030644editdlrm
netifconquery.py30030644editdlrm
nodeconquery.py42610644editdlrm
objclassquery.py38710644editdlrm
pcideviceconquery.py31160644editdlrm
permmap.py164900644editdlrm
perm_map892550644editdlrm
pirqconquery.py30220644editdlrm
polcapquery.py16750644editdlrm
policyrep.cpython-36m-x86_64-linux-gnu.so19635680755editdlrm
portconquery.py51660644editdlrm
query.py17340644editdlrm
rbacrulequery.py57480644editdlrm
rolequery.py25400644editdlrm
sensitivityquery.py27180644editdlrm
terulequery.py93240644editdlrm
typeattrquery.py26820644editdlrm
typequery.py35120644editdlrm
userquery.py47910644editdlrm
util.py54440644editdlrm
__init__.py28560644editdlrm
Edit: /usr/lib64/python3.6/site-packages/setools/genfsconquery.py (3770B)
# Copyright 2014-2015, Tresys Technology, LLC # # This file is part of SETools. # # SETools is free software: you can redistribute it and/or modify # it under the terms of the GNU Lesser General Public License as # published by the Free Software Foundation, either version 2.1 of # the License, or (at your option) any later version. # # SETools is distributed in the hope that it will be useful, # but WITHOUT ANY WARRANTY; without even the implied warranty of # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the # GNU Lesser General Public License for more details. # # You should have received a copy of the GNU Lesser General Public # License along with SETools. If not, see # . # import logging import re from .descriptors import CriteriaDescriptor from .mixins import MatchContext from .query import PolicyQuery from .util import match_regex class GenfsconQuery(MatchContext, PolicyQuery): """ Query genfscon statements. Parameter: policy The policy to query. Keyword Parameters/Class attributes: fs The criteria to match the file system type. fs_regex If true, regular expression matching will be used on the file system type. path The criteria to match the path. path_regex If true, regular expression matching will be used on the path. user The criteria to match the context's user. user_regex If true, regular expression matching will be used on the user. role The criteria to match the context's role. role_regex If true, regular expression matching will be used on the role. type_ The criteria to match the context's type. type_regex If true, regular expression matching will be used on the type. range_ The criteria to match the context's range. range_subset If true, the criteria will match if it is a subset of the context's range. range_overlap If true, the criteria will match if it overlaps any of the context's range. range_superset If true, the criteria will match if it is a superset of the context's range. range_proper If true, use proper superset/subset operations. No effect if not using set operations. """ filetype = None fs = CriteriaDescriptor("fs_regex") fs_regex = False path = CriteriaDescriptor("path_regex") path_regex = False def __init__(self, policy, **kwargs): super(GenfsconQuery, self).__init__(policy, **kwargs) self.log = logging.getLogger(__name__) def results(self): """Generator which yields all matching genfscons.""" self.log.info("Generating genfscon results from {0.policy}".format(self)) self.log.debug("FS: {0.fs!r}, regex: {0.fs_regex}".format(self)) self.log.debug("Path: {0.path!r}, regex: {0.path_regex}".format(self)) self.log.debug("Filetype: {0.filetype!r}".format(self)) self._match_context_debug(self.log) for genfs in self.policy.genfscons(): if self.fs and not match_regex( genfs.fs, self.fs, self.fs_regex): continue if self.path and not match_regex( genfs.path, self.path, self.path_regex): continue if self.filetype and not self.filetype == genfs.filetype: continue if not self._match_context(genfs.context): continue yield genfs