Adding Tomoyo feature for C++.
[iot2.git] / localconfig / tomoyo / C++.tomoyo.pol
diff --git a/localconfig/tomoyo/C++.tomoyo.pol b/localconfig/tomoyo/C++.tomoyo.pol
new file mode 100644 (file)
index 0000000..54d10b6
--- /dev/null
@@ -0,0 +1,26 @@
+<kernel> /usr/sbin/sshd /bin/bash /home/iotuser/iot2/bin/iotruntime/<object-name>.sh /usr/bin/sudo /home/iotuser/iot2/bin/iotruntime/slave/IoTSlave.o
+use_profile 3
+use_group 0
+
+misc env PATH
+misc env LANG
+misc env MAIL
+misc env LOGNAME
+misc env USER
+misc env USERNAME
+misc env HOME
+misc env SHELL
+misc env TERM
+misc env SUDO_COMMAND
+misc env SUDO_USER
+misc env SUDO_UID
+misc env SUDO_GID
+file read /etc/ld.so.preload
+file read /etc/resolv.conf
+file create /home/iotuser/iot2/bin/iotruntime/log/\*.log 0666
+file write /home/iotuser/iot2/bin/iotruntime/log/\*.log
+file read/write /home/iotuser/iot2/bin/iotruntime/slave/\*.log
+file read /home/iotuser/iot2/bin/iotruntime/slave/\*.so
+file read /sys/devices/system/cpu/online
+file write/truncate /home/iotuser/iot2/bin/iotruntime/slave/gmon.out
+