summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorBrett Goulder <predatorfreak@dcaf-security.org>2008-05-18 01:54:56 -0400
committerBrett Goulder <predatorfreak@dcaf-security.org>2008-05-18 01:54:56 -0400
commit1426208647e7228a4d125049528a010b63b67f8b (patch)
tree8744ca8629530f98704c37a9ec9740d6ecbf4f3c
parentd167ebc20b0e6ed77668c7b2e7509ad7fb3a1849 (diff)
downloadopt-1426208647e7228a4d125049528a010b63b67f8b.tar.gz
opt-1426208647e7228a4d125049528a010b63b67f8b.tar.xz
hal: Add missing hal.conf.
-rw-r--r--hal/hal.conf69
1 files changed, 69 insertions, 0 deletions
diff --git a/hal/hal.conf b/hal/hal.conf
new file mode 100644
index 000000000..958d39b9b
--- /dev/null
+++ b/hal/hal.conf
@@ -0,0 +1,69 @@
+<!DOCTYPE busconfig PUBLIC
+ "-//freedesktop//DTD D-BUS Bus Configuration 1.0//EN"
+ "http://www.freedesktop.org/standards/dbus/1.0/busconfig.dtd">
+<busconfig>
+
+ <!-- This configuration file specifies the required security policies
+ for the HAL to work. -->
+
+ <!-- Only root, user haldaemon or group plugdev can own the HAL service -->
+ <policy user="haldaemon">
+ <allow own="org.freedesktop.Hal"/>
+ </policy>
+ <policy user="0">
+ <allow own="org.freedesktop.Hal"/>
+ </policy>
+ <policy group="plugdev">
+ <allow own="org.freedesktop.Hal"/>
+ </policy>
+
+ <!-- Allow anyone to invoke methods on the Manager and Device interfaces -->
+ <policy context="default">
+ <allow send_interface="org.freedesktop.Hal.Manager"/>
+ <allow send_interface="org.freedesktop.Hal.Device"/>
+ <allow receive_interface="org.freedesktop.Hal.Manager"
+ receive_sender="org.freedesktop.Hal"/>
+ <allow receive_interface="org.freedesktop.Hal.Device"
+ receive_sender="org.freedesktop.Hal"/>
+
+ <allow send_interface="org.freedesktop.Hal.Device.SystemPowerManagement"/>
+ <allow send_interface="org.freedesktop.Hal.Device.LaptopPanel"/>
+ <allow send_interface="org.freedesktop.Hal.Device.Volume"/>
+ <allow send_interface="org.freedesktop.Hal.Device.Volume.Crypto"/>
+ <allow receive_interface="org.freedesktop.Hal.Device.SystemPowerManagement"
+ receive_sender="org.freedesktop.Hal"/>
+ <allow receive_interface="org.freedesktop.Hal.Device.LaptopPanel"
+ receive_sender="org.freedesktop.Hal"/>
+ <allow receive_interface="org.freedesktop.Hal.Device.Volume"
+ receive_sender="org.freedesktop.Hal"/>
+ <allow receive_interface="org.freedesktop.Hal.Device.Volume.Crypto"
+ receive_sender="org.freedesktop.Hal"/>
+ </policy>
+
+ <!-- Default policy for the exported interfaces -->
+ <policy context="default">
+ <deny send_interface="org.freedesktop.Hal.Device.SystemPowerManagement"/>
+ <deny send_interface="org.freedesktop.Hal.Device.VideoAdapterPM"/>
+ <deny send_interface="org.freedesktop.Hal.Device.LaptopPanel"/>
+ <deny send_interface="org.freedesktop.Hal.Device.Volume"/>
+ <deny send_interface="org.freedesktop.Hal.Device.Volume.Crypto"/>
+ </policy>
+
+ <policy user="0">
+ <allow send_interface="org.freedesktop.Hal.Device.SystemPowerManagement"/>
+ <allow send_interface="org.freedesktop.Hal.Device.VideoAdapterPM"/>
+ <allow send_interface="org.freedesktop.Hal.Device.LaptopPanel"/>
+ <allow send_interface="org.freedesktop.Hal.Device.Volume"/>
+ <allow send_interface="org.freedesktop.Hal.Device.Volume.Crypto"/>
+ </policy>
+
+ <policy group="plugdev">
+ <allow send_interface="org.freedesktop.Hal.Device.SystemPowerManagement"/>
+ <allow send_interface="org.freedesktop.Hal.Device.VideoAdapterPM"/>
+ <allow send_interface="org.freedesktop.Hal.Device.LaptopPanel"/>
+ <allow send_interface="org.freedesktop.Hal.Device.Volume"/>
+ <allow send_interface="org.freedesktop.Hal.Device.Volume.Crypto"/>
+ </policy>
+
+</busconfig>
+

Generated by cgit