commit 1426208647e7228a4d125049528a010b63b67f8b Author: Brett Goulder <predatorfreak@dcaf-security.org> Date: Sun May 18 01:54:56 2008 -0400 hal: Add missing hal.conf. diff --git a/hal/hal.conf b/hal/hal.conf new file mode 100644 index 0000000..958d39b --- /dev/null +++ b/hal/hal.conf @@ -0,0 +1,69 @@ +<!DOCTYPE busconfig PUBLIC + "-//freedesktop//DTD D-BUS Bus Configuration 1.0//EN" + "http://www.freedesktop.org/standards/dbus/1.0/busconfig.dtd"> +<busconfig> + + <!-- This configuration file specifies the required security policies + for the HAL to work. --> + + <!-- Only root, user haldaemon or group plugdev can own the HAL service --> + <policy user="haldaemon"> + <allow own="org.freedesktop.Hal"/> + </policy> + <policy user="0"> + <allow own="org.freedesktop.Hal"/> + </policy> + <policy group="plugdev"> + <allow own="org.freedesktop.Hal"/> + </policy> + + <!-- Allow anyone to invoke methods on the Manager and Device interfaces --> + <policy context="default"> + <allow send_interface="org.freedesktop.Hal.Manager"/> + <allow send_interface="org.freedesktop.Hal.Device"/> + <allow receive_interface="org.freedesktop.Hal.Manager" + receive_sender="org.freedesktop.Hal"/> + <allow receive_interface="org.freedesktop.Hal.Device" + receive_sender="org.freedesktop.Hal"/> + + <allow send_interface="org.freedesktop.Hal.Device.SystemPowerManagement"/> + <allow send_interface="org.freedesktop.Hal.Device.LaptopPanel"/> + <allow send_interface="org.freedesktop.Hal.Device.Volume"/> + <allow send_interface="org.freedesktop.Hal.Device.Volume.Crypto"/> + <allow receive_interface="org.freedesktop.Hal.Device.SystemPowerManagement" + receive_sender="org.freedesktop.Hal"/> + <allow receive_interface="org.freedesktop.Hal.Device.LaptopPanel" + receive_sender="org.freedesktop.Hal"/> + <allow receive_interface="org.freedesktop.Hal.Device.Volume" + receive_sender="org.freedesktop.Hal"/> + <allow receive_interface="org.freedesktop.Hal.Device.Volume.Crypto" + receive_sender="org.freedesktop.Hal"/> + </policy> + + <!-- Default policy for the exported interfaces --> + <policy context="default"> + <deny send_interface="org.freedesktop.Hal.Device.SystemPowerManagement"/> + <deny send_interface="org.freedesktop.Hal.Device.VideoAdapterPM"/> + <deny send_interface="org.freedesktop.Hal.Device.LaptopPanel"/> + <deny send_interface="org.freedesktop.Hal.Device.Volume"/> + <deny send_interface="org.freedesktop.Hal.Device.Volume.Crypto"/> + </policy> + + <policy user="0"> + <allow send_interface="org.freedesktop.Hal.Device.SystemPowerManagement"/> + <allow send_interface="org.freedesktop.Hal.Device.VideoAdapterPM"/> + <allow send_interface="org.freedesktop.Hal.Device.LaptopPanel"/> + <allow send_interface="org.freedesktop.Hal.Device.Volume"/> + <allow send_interface="org.freedesktop.Hal.Device.Volume.Crypto"/> + </policy> + + <policy group="plugdev"> + <allow send_interface="org.freedesktop.Hal.Device.SystemPowerManagement"/> + <allow send_interface="org.freedesktop.Hal.Device.VideoAdapterPM"/> + <allow send_interface="org.freedesktop.Hal.Device.LaptopPanel"/> + <allow send_interface="org.freedesktop.Hal.Device.Volume"/> + <allow send_interface="org.freedesktop.Hal.Device.Volume.Crypto"/> + </policy> + +</busconfig> +