Hi! i need some help with making screen work again. Some help with the acl system would be appreciated.
Thank you
role gredi u
role_allow_ip AAA.BBB.CCC.DDD/32
subject / {
/ h
/bin x
/dev h
/dev/null r
/dev/pts rwc
/dev/tty rw
/dev/urandom r
/etc rx
/etc/grsec h
/etc/ssh h
/etc/shadow h
/etc/shadow- h
/etc/gshadow h
/etc/gshadow- h
/etc/exim h
/etc/ppp/chap-secrets h
/etc/ppp/pap-secrets h
/etc/samba/smbpasswd h
/lib rx
/usr h
/usr/bin x
/usr/bin/w h
/usr/lib rx
/usr/share h
/usr/share/locale r
/usr/share/terminfo r
/var h
/var/run
/var/spool/mail
/home h
/home/gredi rwcxd
/proc
/proc/meminfo r
/proc/sys/kernel/ngroups_max r
/proc/sys/kernel/version r
/proc/kcore h
/proc/bus h
/proc/prs rx
-CAP_ALL
bind disabled
connect disabled
}
subject /usr/bin/screen-4.0.2 o {
/ h
/bin h
/bin/bash x
/etc h
/etc/ld.so.cache rx
/etc/nsswitch.conf r
/etc/passwd rx
/etc/screenrc r
/etc/shadow r
/home h
/home/*/.screen rwcd
/lib rx
/usr h
/usr/bin h
/usr/bin/screen-4.0.2 x
/usr/lib rx
/usr/sbin h
/usr/sbin/utempter x
/usr/share h
/usr/share/locale r
/usr/share/terminfo r
/var h
/var/run
/var/run/utmp rw
/dev
/dev/null rw
/dev/ptmx rw
/dev/pts rw
/dev/grsec h
/dev/mem h
/dev/kmem h
/dev/port h
/dev/log h
/proc
/proc/kcore h
/proc/sys h
/proc/bus h
-CAP_ALL
bind disabled
connect disabled
}
subject /usr/sbin/utempter o {
/ h
/dev h
/dev/pts
/etc h
/etc/ld.so.cache rx
/etc/nsswitch.conf r
/etc/passwd rx
/lib x
/lib/tls rx
/usr h
/usr/sbin/utempter x
/var h
/var/log/wtmp w
/var/run
/var/run/utmp rw
-CAP_ALL
bind disabled
connect disabled
}