[ SYSTEM ]: Linux srv.persadacompanies.com 4.18.0-553.56.1.el8_10.x86_64 #1 SMP Tue Jun 10 05:00:59 EDT 2025 x86_64
[ SERVER ]: Apache | PHP: 8.4.19
[ USER ]: persadamedika | IP: 45.64.1.108
GEFORCE FILE MANAGER
/
usr
/
lib64
/
python3.6
/
site-packages
/
setools
/
UPLOAD:
NAME
SIZE
QUICK PERMS
ACTIONS
📁 __pycache__
SET
[ DEL ]
📁 diff
SET
[ DEL ]
📄 __init__.py
2,856 B
SET
[ EDIT ]
|
[ DEL ]
📄 boolquery.py
2,239 B
SET
[ EDIT ]
|
[ DEL ]
📄 boundsquery.py
2,406 B
SET
[ EDIT ]
|
[ DEL ]
📄 categoryquery.py
1,922 B
SET
[ EDIT ]
|
[ DEL ]
📄 commonquery.py
2,164 B
SET
[ EDIT ]
|
[ DEL ]
📄 constraintquery.py
5,634 B
SET
[ EDIT ]
|
[ DEL ]
📄 defaultquery.py
2,865 B
SET
[ EDIT ]
|
[ DEL ]
📄 descriptors.py
7,650 B
SET
[ EDIT ]
|
[ DEL ]
📄 devicetreeconquery.py
2,788 B
SET
[ EDIT ]
|
[ DEL ]
📄 dta.py
21,918 B
SET
[ EDIT ]
|
[ DEL ]
📄 exception.py
6,109 B
SET
[ EDIT ]
|
[ DEL ]
📄 fsusequery.py
3,437 B
SET
[ EDIT ]
|
[ DEL ]
📄 genfsconquery.py
3,770 B
SET
[ EDIT ]
|
[ DEL ]
📄 ibendportconquery.py
3,608 B
SET
[ EDIT ]
|
[ DEL ]
📄 ibpkeyconquery.py
5,346 B
SET
[ EDIT ]
|
[ DEL ]
📄 infoflow.py
14,939 B
SET
[ EDIT ]
|
[ DEL ]
📄 initsidquery.py
2,860 B
SET
[ EDIT ]
|
[ DEL ]
📄 iomemconquery.py
4,544 B
SET
[ EDIT ]
|
[ DEL ]
📄 ioportconquery.py
4,567 B
SET
[ EDIT ]
|
[ DEL ]
📄 mixins.py
7,312 B
SET
[ EDIT ]
|
[ DEL ]
📄 mlsrulequery.py
4,703 B
SET
[ EDIT ]
|
[ DEL ]
📄 netifconquery.py
3,003 B
SET
[ EDIT ]
|
[ DEL ]
📄 nodeconquery.py
4,261 B
SET
[ EDIT ]
|
[ DEL ]
📄 objclassquery.py
3,871 B
SET
[ EDIT ]
|
[ DEL ]
📄 pcideviceconquery.py
3,116 B
SET
[ EDIT ]
|
[ DEL ]
📄 perm_map
89,255 B
SET
[ EDIT ]
|
[ DEL ]
📄 permmap.py
16,490 B
SET
[ EDIT ]
|
[ DEL ]
📄 pirqconquery.py
3,022 B
SET
[ EDIT ]
|
[ DEL ]
📄 polcapquery.py
1,675 B
SET
[ EDIT ]
|
[ DEL ]
📄 policyrep.cpython-36m-x86_64-linux-gnu.so
1,963,568 B
SET
[ EDIT ]
|
[ DEL ]
📄 portconquery.py
5,166 B
SET
[ EDIT ]
|
[ DEL ]
📄 query.py
1,734 B
SET
[ EDIT ]
|
[ DEL ]
📄 rbacrulequery.py
5,748 B
SET
[ EDIT ]
|
[ DEL ]
📄 rolequery.py
2,540 B
SET
[ EDIT ]
|
[ DEL ]
📄 sensitivityquery.py
2,718 B
SET
[ EDIT ]
|
[ DEL ]
📄 terulequery.py
9,324 B
SET
[ EDIT ]
|
[ DEL ]
📄 typeattrquery.py
2,682 B
SET
[ EDIT ]
|
[ DEL ]
📄 typequery.py
3,512 B
SET
[ EDIT ]
|
[ DEL ]
📄 userquery.py
4,791 B
SET
[ EDIT ]
|
[ DEL ]
📄 util.py
5,444 B
SET
[ EDIT ]
|
[ DEL ]
DELETE SELECTED
[ CLOSE ]
EDIT: rbacrulequery.py
# Copyright 2014-2015, Tresys Technology, LLC # # This file is part of SETools. # # SETools is free software: you can redistribute it and/or modify # it under the terms of the GNU Lesser General Public License as # published by the Free Software Foundation, either version 2.1 of # the License, or (at your option) any later version. # # SETools is distributed in the hope that it will be useful, # but WITHOUT ANY WARRANTY; without even the implied warranty of # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the # GNU Lesser General Public License for more details. # # You should have received a copy of the GNU Lesser General Public # License along with SETools. If not, see # <http://www.gnu.org/licenses/>. # import logging import re from . import mixins, query from .descriptors import CriteriaDescriptor, CriteriaSetDescriptor from .exception import InvalidType, RuleUseError from .policyrep import RBACRuletype from .util import match_indirect_regex class RBACRuleQuery(mixins.MatchObjClass, query.PolicyQuery): """ Query the RBAC rules. Parameter: policy The policy to query. Keyword Parameters/Class attributes: ruletype The list of rule type(s) to match. source The name of the source role/attribute to match. source_indirect If true, members of an attribute will be matched rather than the attribute itself. source_regex If true, regular expression matching will be used on the source role/attribute. Obeys the source_indirect option. target The name of the target role/attribute to match. target_indirect If true, members of an attribute will be matched rather than the attribute itself. target_regex If true, regular expression matching will be used on the target role/attribute. Obeys target_indirect option. tclass The object class(es) to match. tclass_regex If true, use a regular expression for matching the rule's object class. default The name of the default role to match. default_regex If true, regular expression matching will be used on the default role. """ ruletype = CriteriaSetDescriptor(enum_class=RBACRuletype) source = CriteriaDescriptor("source_regex", "lookup_role") source_regex = False source_indirect = True _target = None target_regex = False target_indirect = True tclass = CriteriaSetDescriptor("tclass_regex", "lookup_class") tclass_regex = False default = CriteriaDescriptor("default_regex", "lookup_role") default_regex = False @property def target(self): return self._target @target.setter def target(self, value): if not value: self._target = None elif self.target_regex: self._target = re.compile(value) else: try: self._target = self.policy.lookup_type_or_attr(value) except InvalidType: self._target = self.policy.lookup_role(value) def __init__(self, policy, **kwargs): super(RBACRuleQuery, self).__init__(policy, **kwargs) self.log = logging.getLogger(__name__) def results(self): """Generator which yields all matching RBAC rules.""" self.log.info("Generating RBAC rule results from {0.policy}".format(self)) self.log.debug("Ruletypes: {0.ruletype}".format(self)) self.log.debug("Source: {0.source!r}, indirect: {0.source_indirect}, " "regex: {0.source_regex}".format(self)) self.log.debug("Target: {0.target!r}, indirect: {0.target_indirect}, " "regex: {0.target_regex}".format(self)) self._match_object_class_debug(self.log) self.log.debug("Default: {0.default!r}, regex: {0.default_regex}".format(self)) for rule in self.policy.rbacrules(): # # Matching on rule type # if self.ruletype: if rule.ruletype not in self.ruletype: continue # # Matching on source role # if self.source and not match_indirect_regex( rule.source, self.source, self.source_indirect, self.source_regex): continue # # Matching on target type (role_transition)/role(allow) # if self.target and not match_indirect_regex( rule.target, self.target, self.target_indirect, self.target_regex): continue # # Matching on object class # try: if not self._match_object_class(rule): continue except RuleUseError: continue # # Matching on default role # if self.default: try: # because default role is always a single # role, hard-code indirect to True # so the criteria can be an attribute if not match_indirect_regex( rule.default, self.default, True, self.default_regex): continue except RuleUseError: continue # if we get here, we have matched all available criteria yield rule