.\" Automatically generated by Pod::Man 2.22 (Pod::Simple 3.13) .\" .\" Standard preamble: .\" ======================================================================== .de Sp \" Vertical space (when we can't use .PP) .if t .sp .5v .if n .sp .. .de Vb \" Begin verbatim text .ft CW .nf .ne \\$1 .. .de Ve \" End verbatim text .ft R .fi .. .\" Set up some character translations and predefined strings. \*(-- will .\" give an unbreakable dash, \*(PI will give pi, \*(L" will give a left .\" double quote, and \*(R" will give a right double quote. \*(C+ will .\" give a nicer C++. Capital omega is used to do unbreakable dashes and .\" therefore won't be available. \*(C` and \*(C' expand to `' in nroff, .\" nothing in troff, for use with C<>. .tr \(*W- .ds C+ C\v'-.1v'\h'-1p'\s-2+\h'-1p'+\s0\v'.1v'\h'-1p' .ie n \{\ . ds -- \(*W- . ds PI pi . if (\n(.H=4u)&(1m=24u) .ds -- \(*W\h'-12u'\(*W\h'-12u'-\" diablo 10 pitch . if (\n(.H=4u)&(1m=20u) .ds -- \(*W\h'-12u'\(*W\h'-8u'-\" diablo 12 pitch . ds L" "" . ds R" "" . ds C` "" . ds C' "" 'br\} .el\{\ . ds -- \|\(em\| . ds PI \(*p . ds L" `` . ds R" '' 'br\} .\" .\" Escape single quotes in literal strings from groff's Unicode transform. .ie \n(.g .ds Aq \(aq .el .ds Aq ' .\" .\" If the F register is turned on, we'll generate index entries on stderr for .\" titles (.TH), headers (.SH), subsections (.SS), items (.Ip), and index .\" entries marked with X<> in POD. Of course, you'll have to process the .\" output yourself in some meaningful fashion. .ie \nF \{\ . de IX . tm Index:\\$1\t\\n%\t"\\$2" .. . nr % 0 . rr F .\} .el \{\ . de IX .. .\} .\" .\" Accent mark definitions (@(#)ms.acc 1.5 88/02/08 SMI; from UCB 4.2). .\" Fear. Run. Save yourself. No user-serviceable parts. . \" fudge factors for nroff and troff .if n \{\ . ds #H 0 . ds #V .8m . ds #F .3m . ds #[ \f1 . ds #] \fP .\} .if t \{\ . ds #H ((1u-(\\\\n(.fu%2u))*.13m) . ds #V .6m . ds #F 0 . ds #[ \& . ds #] \& .\} . \" simple accents for nroff and troff .if n \{\ . ds ' \& . ds ` \& . ds ^ \& . ds , \& . ds ~ ~ . ds / .\} .if t \{\ . ds ' \\k:\h'-(\\n(.wu*8/10-\*(#H)'\'\h"|\\n:u" . ds ` \\k:\h'-(\\n(.wu*8/10-\*(#H)'\`\h'|\\n:u' . ds ^ \\k:\h'-(\\n(.wu*10/11-\*(#H)'^\h'|\\n:u' . ds , \\k:\h'-(\\n(.wu*8/10)',\h'|\\n:u' . ds ~ \\k:\h'-(\\n(.wu-\*(#H-.1m)'~\h'|\\n:u' . ds / \\k:\h'-(\\n(.wu*8/10-\*(#H)'\z\(sl\h'|\\n:u' .\} . \" troff and (daisy-wheel) nroff accents .ds : \\k:\h'-(\\n(.wu*8/10-\*(#H+.1m+\*(#F)'\v'-\*(#V'\z.\h'.2m+\*(#F'.\h'|\\n:u'\v'\*(#V' .ds 8 \h'\*(#H'\(*b\h'-\*(#H' .ds o \\k:\h'-(\\n(.wu+\w'\(de'u-\*(#H)/2u'\v'-.3n'\*(#[\z\(de\v'.3n'\h'|\\n:u'\*(#] .ds d- \h'\*(#H'\(pd\h'-\w'~'u'\v'-.25m'\f2\(hy\fP\v'.25m'\h'-\*(#H' .ds D- D\\k:\h'-\w'D'u'\v'-.11m'\z\(hy\v'.11m'\h'|\\n:u' .ds th \*(#[\v'.3m'\s+1I\s-1\v'-.3m'\h'-(\w'I'u*2/3)'\s-1o\s+1\*(#] .ds Th \*(#[\s+2I\s-2\h'-\w'I'u*3/5'\v'-.3m'o\v'.3m'\*(#] .ds ae a\h'-(\w'a'u*4/10)'e .ds Ae A\h'-(\w'A'u*4/10)'E . \" corrections for vroff .if v .ds ~ \\k:\h'-(\\n(.wu*9/10-\*(#H)'\s-2\u~\d\s+2\h'|\\n:u' .if v .ds ^ \\k:\h'-(\\n(.wu*10/11-\*(#H)'\v'-.4m'^\v'.4m'\h'|\\n:u' . \" for low resolution devices (crt and lpr) .if \n(.H>23 .if \n(.V>19 \ \{\ . ds : e . ds 8 ss . ds o a . ds d- d\h'-1'\(ga . ds D- D\h'-1'\(hy . ds th \o'bp' . ds Th \o'LP' . ds ae ae . ds Ae AE .\} .rm #[ #] #H #V #F C .\" ======================================================================== .\" .IX Title "TOMOYO-INIT 8" .TH TOMOYO-INIT 8 "2012-04-14" "tomoyo-tools 2.5.0" "System Administration Utilities" .\" For nroff, turn off justification. Always turn off hyphenation; it makes .\" way too many mistakes in technical documents. .if n .ad l .nh .SH "NAME" tomoyo\-init \- load TOMOYO Linux policy automatically .SH "SYNOPSIS" .IX Header "SYNOPSIS" \&\fBtomoyo-init\fR .SH "DESCRIPTION" .IX Header "DESCRIPTION" When \fI/sbin/init\fR starts, the kernel automatically calls this program. Policy files that have been saved to disk are subsequently loaded into kernel memory. .PP This program copies the following files: .PP .Vb 1 \& /etc/tomoyo/exception_policy.conf => /sys/kernel/security/tomoyo/exception_policy \& \& /etc/tomoyo/domain_policy.conf => /sys/kernel/security/tomoyo/domain_policy \& \& /etc/tomoyo/profile.conf => /sys/kernel/security/tomoyo/profile \& \& /etc/tomoyo/manager.conf => /sys/kernel/security/tomoyo/manager \& \& /etc/tomoyo/stat.conf => /sys/kernel/security/tomoyo/stat .Ve .PP If \fI/etc/tomoyo/tomoyo\-post\-init\fR exists and is executable, then it will also be executed. This allows additional control over what happens at startup. .PP You will not usually need to invoke this program manually. .SH "EXAMPLES" .IX Header "EXAMPLES" .ie n .IP "\fBContents of \fB""/etc/tomoyo/tomoyo\-post\-init""\fB allowing non-root \f(BI""demo""\fB user to edit policy\fR" 4 .el .IP "\fBContents of \f(CB/etc/tomoyo/tomoyo\-post\-init\fB allowing non-root \f(CBdemo\fB user to edit policy\fR" 4 .IX Item "Contents of /etc/tomoyo/tomoyo-post-init allowing non-root demo user to edit policy" .Vb 3 \& #!/bin/bash \& echo manage_by_non_root > /sys/kernel/security/tomoyo/manager \& chown \-R demo /sys/kernel/security/tomoyo .Ve .SH "BUGS" .IX Header "BUGS" If you find any bugs, send an email to . .SH "AUTHORS" .IX Header "AUTHORS" .IP "Tetsuo Handa " 4 .IX Item "Tetsuo Handa " Main author. .IP "Jamie Nguyen " 4 .IX Item "Jamie Nguyen " Documentation and website. .SH "SEE ALSO" .IX Header "SEE ALSO" \&\fBtomoyo-loadpolicy\fR(8) .PP See for more information.