Blame python/sepolicy/sepolicy-network.8

Packit Service 9fb14c
.TH "sepolicy-network" "8" "20121005" "" ""
Packit Service 9fb14c
.SH "NAME"
Packit Service 9fb14c
sepolicy-network \- Examine the SELinux Policy and generate a network report
Packit Service 9fb14c
Packit Service 9fb14c
.SH "SYNOPSIS"
Packit Service 9fb14c
Packit Service 9fb14c
.br
Packit Service 9fb14c
.B sepolicy network [\-h] (\-l | \-a application [application ...] | \-p PORT [PORT ...] | \-t TYPE [TYPE ...] | \-d DOMAIN [DOMAIN ...])
Packit Service 9fb14c
Packit Service 9fb14c
.SH "DESCRIPTION"
Packit Service 9fb14c
Use sepolicy network to examine SELinux Policy and generate network reports.
Packit Service 9fb14c
Packit Service 9fb14c
.SH "OPTIONS"
Packit Service 9fb14c
.TP
Packit Service 9fb14c
.I                \-a, \-\-application
Packit Service 9fb14c
Generate a report listing the ports to which the specified init application is allowed to connect and or bind.
Packit Service 9fb14c
.TP
Packit Service 9fb14c
.I                \-d, \-\-domain     
Packit Service 9fb14c
Generate a report listing the ports to which the specified domain is allowed to connect and or bind.
Packit Service 9fb14c
.TP
Packit Service 9fb14c
.I                \-l, \-\-list        
Packit Service 9fb14c
List all Network Port Types defined in SELinux Policy
Packit Service 9fb14c
.TP
Packit Service 9fb14c
.I                \-h, \-\-help       
Packit Service 9fb14c
Display help message
Packit Service 9fb14c
.TP
Packit Service 9fb14c
.I                \-t, \-\-type
Packit Service 9fb14c
Generate a report listing the port numbers associate with the specified SELinux port type.
Packit Service 9fb14c
.TP
Packit Service 9fb14c
.I                \-p, \-\-port
Packit Service 9fb14c
Generate a report listing the SELinux port types associate with the specified port number.
Packit Service 9fb14c
Packit Service 9fb14c
.SH "EXAMPLES"
Packit Service 9fb14c
Packit Service 9fb14c
.B sepolicy network -p 22
Packit Service 9fb14c
.br
Packit Service 9fb14c
22: tcp ssh_port_t 22
Packit Service 9fb14c
.br
Packit Service 9fb14c
22: udp reserved_port_t 1-511
Packit Service 9fb14c
.br
Packit Service 9fb14c
22: tcp reserved_port_t 1-511
Packit Service 9fb14c
Packit Service 9fb14c
.B sepolicy network -a /usr/sbin/sshd
Packit Service 9fb14c
.br
Packit Service 9fb14c
sshd_t: tcp name_connect
Packit Service 9fb14c
.br
Packit Service 9fb14c
	111 (portmap_port_t)
Packit Service 9fb14c
.br
Packit Service 9fb14c
	53 (dns_port_t)
Packit Service 9fb14c
.br
Packit Service 9fb14c
	88, 750, 4444 (kerberos_port_t)
Packit Service 9fb14c
.br
Packit Service 9fb14c
	9080 (ocsp_port_t)
Packit Service 9fb14c
.br
Packit Service 9fb14c
	9180, 9701, 9443-9447 (pki_ca_port_t)
Packit Service 9fb14c
.br
Packit Service 9fb14c
	32768-61000 (ephemeral_port_t)
Packit Service 9fb14c
.br
Packit Service 9fb14c
	all ports < 1024 (reserved_port_type)
Packit Service 9fb14c
.br
Packit Service 9fb14c
	all ports with out defined types (port_t)
Packit Service 9fb14c
.br
Packit Service 9fb14c
sshd_t: tcp name_bind
Packit Service 9fb14c
.br
Packit Service 9fb14c
	22 (ssh_port_t)
Packit Service 9fb14c
.br
Packit Service 9fb14c
	5900-5983, 5985-5999 (vnc_port_t)
Packit Service 9fb14c
.br
Packit Service 9fb14c
	6000-6020 (xserver_port_t)
Packit Service 9fb14c
.br
Packit Service 9fb14c
	32768-61000 (ephemeral_port_t)
Packit Service 9fb14c
.br
Packit Service 9fb14c
	all ports > 500 and  < 1024 (rpc_port_type)
Packit Service 9fb14c
.br
Packit Service 9fb14c
	all ports with out defined types (port_t)
Packit Service 9fb14c
.br
Packit Service 9fb14c
sshd_t: udp name_bind
Packit Service 9fb14c
.br
Packit Service 9fb14c
	32768-61000 (ephemeral_port_t)
Packit Service 9fb14c
.br
Packit Service 9fb14c
	all ports > 500 and  < 1024 (rpc_port_type)
Packit Service 9fb14c
.br
Packit Service 9fb14c
	all ports with out defined types (port_t)
Packit Service 9fb14c
Packit Service 9fb14c
Packit Service 9fb14c
.SH "AUTHOR"
Packit Service 9fb14c
This man page was written by Daniel Walsh <dwalsh@redhat.com>
Packit Service 9fb14c
Packit Service 9fb14c
.SH "SEE ALSO"
Packit Service 9fb14c
sepolicy(8), selinux(8), semanage(8)
Packit Service 9fb14c