#pragma once #include #include // Internal APIs, do not use directly struct sepol_impl : public sepolicy { int set_attr(const char *attr_name, int type_val); void check_avtab_node(avtab_ptr_t node); avtab_ptr_t get_avtab_node(avtab_key_t *key, avtab_extended_perms_t *xperms); int add_avrule(avtab_key_t *key, int val, bool n); int add_rule(const char *s, const char *t, const char *c, const char *p, int effect, bool n); int add_rule(type_datum_t *src, type_datum_t *tgt, class_datum_t *cls, perm_datum_t *perm, int effect, bool n); int add_avxrule(avtab_key_t *key, uint16_t low, uint16_t high, bool n); int add_xperm_rule(type_datum_t *src, type_datum_t *tgt, class_datum_t *cls, uint16_t low, uint16_t high, int effect, bool n); int add_xperm_rule(const char *s, const char *t, const char *c, const char *range, int effect, bool n); int create_domain(const char *type_name); int set_domain_state(const char *s, bool permissive); int add_filename_trans(const char *s, const char *t, const char *c, const char *d, const char *o); int add_typeattribute(const char *type, const char *attr); int add_type_rule(const char *s, const char *t, const char *c, const char *d, int effect); int add_genfscon(const char *fs_name, const char *path, const char *context); void strip_dontaudit(); void allow_su_client(const char *type); }; #define impl static_cast(this) void statement_help();