Solaris Trusted Extensions Developer's Guide
この本のみを検索
PDF 文書ファイルをダウンロードする (1197 KB)
A
abbreviations used in interface names ( Index Term Link )
access
checks for
network ( Index Term Link )
sockets ( Index Term Link )
Trusted X Window System ( Index Term Link )
file labels ( Index Term Link )
guidelines for labels ( Index Term Link )
multilevel port connections ( Index Term Link )
ADMIN_HIGH label ( Index Term Link )
ADMIN_LOW label ( Index Term Link )
APIs
clearance label ( Index Term Link )
declarations ( Index Term Link )
examples of Trusted Extensions in Solaris ( Index Term Link )
introduction to ( Index Term Link )
label clipping ( Index Term Link )
label range ( Index Term Link )
labels ( Index Term Link ) ( Index Term Link ) ( Index Term Link )
process security attribute flags ( Index Term Link )
RPC ( Index Term Link )
security APIs from Solaris OS ( Index Term Link )
sensitivity label ( Index Term Link )
for Solaris that use Trusted Extensions parameters ( Index Term Link )
Trusted X Window System ( Index Term Link ) ( Index Term Link ) ( Index Term Link ) ( Index Term Link )
for zone labels and zone paths ( Index Term Link )
applications
integrating ( Index Term Link )
releasing ( Index Term Link )
testing and debugging ( Index Term Link )
atoms, predefined in X Window System ( Index Term Link )
auditid field ( Index Term Link )
B
bldominates() routine
code example ( Index Term Link )
declaration ( Index Term Link )
blequal() routine
code example ( Index Term Link )
declaration ( Index Term Link )
blinrange() routine
declaration ( Index Term Link ) ( Index Term Link )
blmaximum() routine, declaration ( Index Term Link )
blminimum() routine, declaration ( Index Term Link )
blstrictdom() routine
code example ( Index Term Link )
declaration ( Index Term Link )
brange_t type ( Index Term Link )
C
classifications
clearance component ( Index Term Link )
disjoint ( Index Term Link )
dominant ( Index Term Link )
equal ( Index Term Link )
label component ( Index Term Link )
strictly dominant ( Index Term Link )
clearance labels ( Index Term Link )
ClearanceLabel subclass ( Index Term Link )
clearances
disjoint labels ( Index Term Link )
dominant labels ( Index Term Link )
equal labels ( Index Term Link )
session ( Index Term Link )
strictly dominant labels ( Index Term Link )
user ( Index Term Link )
code examples
file systems
obtaining label ( Index Term Link )
getSocketPeer static factory
obtaining socket peer label ( Index Term Link )
label_encodings file
creating printer banner ( Index Term Link ) ( Index Term Link )
obtaining character-coded color names ( Index Term Link )
label relationships ( Index Term Link )
labels
obtaining on file system ( Index Term Link )
obtaining on window ( Index Term Link )
obtaining process label ( Index Term Link )
setting on window ( Index Term Link )
obtain socket peer label ( Index Term Link )
printer banner ( Index Term Link ) ( Index Term Link )
set file sensitivity label ( Index Term Link )
Trusted X Window System ( Index Term Link )
obtaining window attributes ( Index Term Link )
obtaining window label ( Index Term Link )
obtaining window user ID ( Index Term Link )
obtaining workstation owner ( Index Term Link )
setting window label ( Index Term Link )
translating with font list ( Index Term Link )
communication endpoints
access checks ( Index Term Link )
connections described ( Index Term Link )
compartments
clearance component ( Index Term Link )
disjoint ( Index Term Link )
dominant ( Index Term Link )
equal ( Index Term Link )
label component ( Index Term Link )
strictly dominant ( Index Term Link )
compile
label libraries ( Index Term Link )
Trusted X Window System libraries ( Index Term Link )
connection requests
security attributes ( Index Term Link )
security policy ( Index Term Link )
D
DAC (discretionary access control) ( Index Term Link ) ( Index Term Link )
data types
label APIs ( Index Term Link )
Trusted X Window System APIs ( Index Term Link )
debugging, applications ( Index Term Link )
definitions of terms ( Index Term Link )
detecting a Trusted Extensions system ( Index Term Link )
determining whether a system is labeled, example ( Index Term Link )
devices, input device privileges ( Index Term Link )
DGA (direct graphics access), privileges ( Index Term Link )
disjoint labels ( Index Term Link )
dominant labels ( Index Term Link ) ( Index Term Link )
dominates method, declaration ( Index Term Link )
downgrading labels
guidelines ( Index Term Link )
privileges needed ( Index Term Link )
Trusted X Window System ( Index Term Link )
E
equal labels ( Index Term Link )
equals method, declaration ( Index Term Link )
examples of Trusted Extensions APIs in Solaris ( Index Term Link )
F
fgetlabel() system call, declaration ( Index Term Link )
file_dac_search privilege, overriding access to parent directory of zone's root directory ( Index Term Link )
file_downgrade_sl privilege ( Index Term Link )
file_owner privilege ( Index Term Link )
files, label privileges ( Index Term Link )
fonts
font list translation ( Index Term Link )
font path privileges ( Index Term Link )
G
get_peer_label() function ( Index Term Link )
getClearanceLabel static factory, declaration ( Index Term Link )
getdevicerange() routine, declaration ( Index Term Link )
getDeviceRange static factory, declaration ( Index Term Link )
getFileLabel static factory
declaration ( Index Term Link ) ( Index Term Link )
getlabel() system call
code example ( Index Term Link )
declaration ( Index Term Link )
getlabel command ( Index Term Link )
code example ( Index Term Link )
getLabelRange static factory, declaration ( Index Term Link )
getLower method, declaration ( Index Term Link )
getMaximum method
declaration ( Index Term Link ) ( Index Term Link ) ( Index Term Link )
getMinimum method
declaration ( Index Term Link ) ( Index Term Link ) ( Index Term Link )
getpathbylabel() routine, declaration ( Index Term Link )
getplabel() routine
code example ( Index Term Link ) ( Index Term Link ) ( Index Term Link )
declaration ( Index Term Link )
getSensitivityLabel static factory
code example ( Index Term Link )
declaration ( Index Term Link )
getSocketPeer static factory
code example ( Index Term Link )
declaration ( Index Term Link )
getUpper method, declaration ( Index Term Link )
getuserrange() routine, declaration ( Index Term Link )
getUserRange static factory, declaration ( Index Term Link )
getzoneidbylabel() routine, declaration ( Index Term Link )
getzonelabelbyid() routine, declaration ( Index Term Link )
getzonelabelbyname() routine, declaration ( Index Term Link )
getzonerootbyid() routine, declaration ( Index Term Link )
getzonerootbylabel() routine, declaration ( Index Term Link )
getzonerootbyname() routine, declaration ( Index Term Link )
gid field ( Index Term Link )
global zone
controlling multilevel operations ( Index Term Link )
labels in ( Index Term Link )
mounts in ( Index Term Link )
GUIs, Xlib objects ( Index Term Link )
H
header files
label APIs ( Index Term Link )
locations, list of ( Index Term Link )
Trusted X Window System APIs ( Index Term Link )
I
iaddr field ( Index Term Link )
inRange method
declaration ( Index Term Link ) ( Index Term Link )
integrating an application ( Index Term Link )
interface names, abbreviations used in ( Index Term Link )
IPC (interprocess communication) ( Index Term Link )
is_system_labeled() routine
declaration ( Index Term Link )
example ( Index Term Link )
J
Java bindings
classes ( Index Term Link )
ClearanceLabel subclass ( Index Term Link )
Range class ( Index Term Link )
SensitivityLabel subclass ( Index Term Link )
SolarisLabel abstract class ( Index Term Link )
Java methods
dominates ( Index Term Link )
equals ( Index Term Link )
getLower ( Index Term Link )
getMaximum ( Index Term Link ) ( Index Term Link ) ( Index Term Link )
getMinimum ( Index Term Link ) ( Index Term Link ) ( Index Term Link )
getUpper ( Index Term Link )
inRange ( Index Term Link ) ( Index Term Link )
setFileLabel ( Index Term Link )
strictlyDominates ( Index Term Link )
toCaveats ( Index Term Link )
toChannels ( Index Term Link )
toColor ( Index Term Link )
toFooter ( Index Term Link )
toHeader ( Index Term Link )
toInternal ( Index Term Link )
toProtectAs ( Index Term Link )
toRootPath ( Index Term Link )
toString ( Index Term Link )
toText ( Index Term Link )
toTextLong ( Index Term Link )
toTextShort ( Index Term Link )
Java static factories
getClearanceLabel ( Index Term Link )
getDeviceRange ( Index Term Link )
getFileLabel ( Index Term Link ) ( Index Term Link )
getLabelRange ( Index Term Link )
getSensitivityLabel ( Index Term Link )
getSocketPeer ( Index Term Link )
getUserRange ( Index Term Link )
L
label APIs ( Index Term Link )
introduction to ( Index Term Link )
label clipping ( Index Term Link )
labels
code examples ( Index Term Link )
list of ( Index Term Link )
RPC ( Index Term Link )
Trusted X Window System ( Index Term Link ) ( Index Term Link ) ( Index Term Link )
windows ( Index Term Link )
for zone labels and zone paths ( Index Term Link )
label clipping
API declaration ( Index Term Link ) ( Index Term Link )
translating with font list ( Index Term Link )
label data types
label ranges ( Index Term Link )
sensitivity labels ( Index Term Link )
label_encodings file
API declarations ( Index Term Link )
color names ( Index Term Link )
non-English ( Index Term Link )
label ranges ( Index Term Link )
file systems
data structure ( Index Term Link )
overview ( Index Term Link )
label_to_str() routine
code example ( Index Term Link ) ( Index Term Link ) ( Index Term Link )
declaration ( Index Term Link )
labeled zones ( Index Term Link )
labels
acquiring ( Index Term Link )
ADMIN_HIGH ( Index Term Link )
ADMIN_LOW ( Index Term Link )
API declarations ( Index Term Link )
label clipping ( Index Term Link )
label_encodings file ( Index Term Link )
labels ( Index Term Link )
levels ( Index Term Link )
network databases ( Index Term Link )
ranges ( Index Term Link )
zones ( Index Term Link )
components of ( Index Term Link )
definition of ( Index Term Link )
disjoint ( Index Term Link )
dominant ( Index Term Link )
downgrading guidelines ( Index Term Link )
in global zone ( Index Term Link )
objects ( Index Term Link ) ( Index Term Link ) ( Index Term Link )
privileged tasks ( Index Term Link )
privileges
downgrading labels ( Index Term Link )
upgrading labels ( Index Term Link )
ranges ( Index Term Link ) ( Index Term Link )
relationships ( Index Term Link ) ( Index Term Link )
strictly dominant ( Index Term Link )
types
clearance ( Index Term Link )
sensitivity ( Index Term Link )
upgrading guidelines ( Index Term Link )
user processes ( Index Term Link )
libraries, Trusted X Window System APIs ( Index Term Link )
libraries, compile, label APIs ( Index Term Link )
library routines
API declarations ( Index Term Link )
bldominates() ( Index Term Link )
blequal() ( Index Term Link )
blinrange() ( Index Term Link ) ( Index Term Link )
blmaximum() ( Index Term Link )
blminimum() ( Index Term Link )
blstrictdom() ( Index Term Link )
getdevicerange() ( Index Term Link )
getpathbylabel() ( Index Term Link )
getplabel() ( Index Term Link )
getuserrange() ( Index Term Link )
getzoneidbylabel() ( Index Term Link )
getzonelabelbyid() ( Index Term Link )
getzonelabelbyname() ( Index Term Link )
getzonerootbyid() ( Index Term Link )
getzonerootbylabel() ( Index Term Link )
getzonerootbyname() ( Index Term Link )
is_system_labeled() ( Index Term Link )
label_to_str() ( Index Term Link ) ( Index Term Link ) ( Index Term Link ) ( Index Term Link )
m_label_alloc() ( Index Term Link )
m_label_dup() ( Index Term Link )
m_label_free() ( Index Term Link )
setflabel() ( Index Term Link )
str_to_label() ( Index Term Link )
tsol_getrhtype() ( Index Term Link )
ucred_getlabel() ( Index Term Link )
XQueryExtension() ( Index Term Link )
XTSOLgetClientAttributes() ( Index Term Link )
XTSOLgetPropAttributes() ( Index Term Link )
XTSOLgetPropLabel() ( Index Term Link )
XTSOLgetPropUID() ( Index Term Link )
XTSOLgetResAttributes() ( Index Term Link )
XTSOLgetResLabel() ( Index Term Link )
XTSOLgetResUID() ( Index Term Link )
XTSOLgetSSHeight() ( Index Term Link )
XTSOLgetWorkstationOwner() ( Index Term Link )
XTSOLIsWindowTrusted() ( Index Term Link )
XTSOLmakeTPWindow() ( Index Term Link )
XTSOLsetPolyInstInfo() ( Index Term Link )
XTSOLsetPropLabel() ( Index Term Link )
XTSOLsetPropUID() ( Index Term Link )
XTSOLsetResLabel() ( Index Term Link )
XTSOLsetResUID() ( Index Term Link )
XTSOLsetSessionHI() ( Index Term Link )
XTSOLsetSessionLO() ( Index Term Link )
XTSOLsetSSHeight() ( Index Term Link )
XTSOLsetWorkstationOwner() ( Index Term Link )
M
m_label_alloc() routine
code example ( Index Term Link )
declaration ( Index Term Link )
m_label_dup() routine, declaration ( Index Term Link )
m_label_free() routine, declaration ( Index Term Link )
m_label_t type ( Index Term Link )
MAC (mandatory access control) ( Index Term Link ) ( Index Term Link )
making socket exempt from ( Index Term Link )
multilevel operations, security policy for ( Index Term Link )
multilevel ports
description of ( Index Term Link ) ( Index Term Link ) ( Index Term Link )
using with UDP ( Index Term Link )
N
net_bindmlp privilege ( Index Term Link )
net_mac_aware privilege ( Index Term Link )
network security policy, default ( Index Term Link )
networks, security attributes ( Index Term Link )
non-global zones ( Index Term Link )
O
ouid field ( Index Term Link )
P
PAF_SELAGNT flag ( Index Term Link )
pid field ( Index Term Link )
plabel command ( Index Term Link )
polyinstantiation, description of ( Index Term Link )
PORTMAPPER service ( Index Term Link )
ports
multilevel ( Index Term Link )
single-level ( Index Term Link )
printer banner page
label translation ( Index Term Link ) ( Index Term Link )
printing
banner page ( Index Term Link )
get_peer_label() function ( Index Term Link )
label API and ( Index Term Link )
labeled output ( Index Term Link )
multilevel ( Index Term Link )
privileged tasks
labels ( Index Term Link )
multilevel port connections ( Index Term Link )
Trusted X Window System ( Index Term Link )
privileges
file_dac_read ( Index Term Link )
file_dac_search ( Index Term Link ) ( Index Term Link )
file_dac_write ( Index Term Link )
file_downgrade_sl ( Index Term Link ) ( Index Term Link )
file_owner ( Index Term Link )
file_upgrade_sl ( Index Term Link ) ( Index Term Link )
net_bindmlp ( Index Term Link ) ( Index Term Link ) ( Index Term Link )
net_mac_aware ( Index Term Link ) ( Index Term Link )
sys_trans_label ( Index Term Link ) ( Index Term Link )
win_config ( Index Term Link )
win_dac_read ( Index Term Link )
win_dac_write ( Index Term Link )
win_devices ( Index Term Link ) ( Index Term Link )
win_dga ( Index Term Link )
win_downgrade_sl ( Index Term Link )
win_fontpath ( Index Term Link )
win_selection ( Index Term Link )
win_upgrade_sl ( Index Term Link ) ( Index Term Link )
process clearances, labels defined ( Index Term Link )
processes
binding to multilevel ports ( Index Term Link )
in labeled zones ( Index Term Link )
multilevel initiated in global zone ( Index Term Link )
writing down from global zone ( Index Term Link )
properties
description of ( Index Term Link ) ( Index Term Link )
privileges ( Index Term Link )
R
Range class
description of ( Index Term Link )
methods and static factories ( Index Term Link )
relationships between labels ( Index Term Link )
releasing an application ( Index Term Link )
remote host
credential ( Index Term Link ) ( Index Term Link )
label ( Index Term Link )
type ( Index Term Link )
ResourceType structure ( Index Term Link )
RPC (remote procedure call) ( Index Term Link )
S
SCM_UCRED ( Index Term Link )
security attribute flags, API declarations ( Index Term Link )
security attributes
accessing labels ( Index Term Link )
labels from remote hosts ( Index Term Link )
Trusted X Window System
contrast with Solaris ( Index Term Link )
description of ( Index Term Link )
security policy
communication endpoints ( Index Term Link )
definition of ( Index Term Link )
global zone ( Index Term Link )
label guidelines ( Index Term Link )
labels ( Index Term Link )
multilevel operations ( Index Term Link )
multilevel ports ( Index Term Link )
network ( Index Term Link )
sockets ( Index Term Link )
translating labels ( Index Term Link )
Trusted X Window System ( Index Term Link )
write-down in global zone ( Index Term Link )
Selection Manager
bypassing with flag ( Index Term Link )
security policy ( Index Term Link )
sensitivity labels ( Index Term Link ) ( Index Term Link )
SensitivityLabel subclass
code example ( Index Term Link )
description of ( Index Term Link )
methods ( Index Term Link )
sessionid field ( Index Term Link )
setFileLabel method, declaration ( Index Term Link )
setflabel() routine
code example ( Index Term Link )
declaration ( Index Term Link )
setpflags() system call ( Index Term Link )
single-level ports, description of ( Index Term Link )
sl field ( Index Term Link ) ( Index Term Link )
SO_MAC_EXEMPT option ( Index Term Link )
SO_RECVUCRED option ( Index Term Link )
sockets
access checks ( Index Term Link ) ( Index Term Link )
exempt from MAC ( Index Term Link )
software packages, creating ( Index Term Link )
SOL_SOCKET ( Index Term Link )
Solaris
examples of Trusted Extensions APIs ( Index Term Link )
interfaces, API declarations ( Index Term Link )
SolarisLabel abstract class
description of ( Index Term Link )
methods and static factories ( Index Term Link )
str_to_label() routine, code example ( Index Term Link )
strictly dominant labels ( Index Term Link )
strictlyDominates method, declaration ( Index Term Link )
sys_trans_label privilege ( Index Term Link )
system calls
API declarations ( Index Term Link )
fgetlabel() routine ( Index Term Link )
getlabel() routine ( Index Term Link )
T
terms, definitions of ( Index Term Link )
testing and debugging applications ( Index Term Link )
text, color names ( Index Term Link )
toCaveats method
code example ( Index Term Link )
declaration ( Index Term Link )
toChannels method
code example ( Index Term Link )
declaration ( Index Term Link )
toColor method, declaration ( Index Term Link )
toFooter method
code example ( Index Term Link )
declaration ( Index Term Link )
toHeader method
code example ( Index Term Link )
declaration ( Index Term Link )
toInternal method, declaration ( Index Term Link )
toProtectAs method
code example ( Index Term Link )
declaration ( Index Term Link )
toRootPath method, declaration ( Index Term Link )
toString method, declaration ( Index Term Link )
toText method, declaration ( Index Term Link )
toTextLong method, declaration ( Index Term Link )
toTextShort method, declaration ( Index Term Link )
translation
labels with font list ( Index Term Link )
privileges needed ( Index Term Link )
Trusted Extensions APIs, Solaris examples ( Index Term Link )
Trusted Extensions system, detecting ( Index Term Link )
Trusted Path window, definition of ( Index Term Link )
Trusted X Window System
API declarations ( Index Term Link ) ( Index Term Link )
client attributes structure ( Index Term Link )
defaults ( Index Term Link )
description of ( Index Term Link )
input devices ( Index Term Link )
label-clipping API declaration ( Index Term Link )
object attribute structure ( Index Term Link )
object type definition ( Index Term Link )
objects ( Index Term Link )
override-redirect ( Index Term Link )
predefined atoms ( Index Term Link )
privileged tasks ( Index Term Link )
properties ( Index Term Link )
property attribute structure ( Index Term Link )
protocol extensions ( Index Term Link )
root window ( Index Term Link )
security attributes
contrast with Solaris ( Index Term Link )
description of ( Index Term Link )
security policy ( Index Term Link )
Selection Manager ( Index Term Link )
server control ( Index Term Link )
Trusted Path window ( Index Term Link )
using interfaces ( Index Term Link )
tsol_getrhtype() routine, declaration ( Index Term Link )
U
ucred_getlabel() routine, declaration ( Index Term Link )
ucred_t data structure ( Index Term Link ) ( Index Term Link )
uid field ( Index Term Link ) ( Index Term Link ) ( Index Term Link ) ( Index Term Link )
upgrading labels
guidelines ( Index Term Link )
privileges needed ( Index Term Link )
Trusted X Window System ( Index Term Link )
user IDs
obtaining on window ( Index Term Link )
obtaining on workstation ( Index Term Link )
W
Web Guard prototype ( Index Term Link )
win_config privilege ( Index Term Link )
win_dac_read privilege ( Index Term Link )
win_dac_write privilege ( Index Term Link )
win_devices privilege ( Index Term Link )
win_dga privilege ( Index Term Link )
win_downgrade_sl privilege ( Index Term Link )
win_fontpath privilege ( Index Term Link )
win_mac_read privilege ( Index Term Link )
win_mac_write privilege ( Index Term Link )
win_upgrade_sl privilege ( Index Term Link )
windows
client, security policy ( Index Term Link )
defaults ( Index Term Link )
description of ( Index Term Link )
override-redirect, security policy ( Index Term Link )
privileges ( Index Term Link )
root, security policy ( Index Term Link )
security policy ( Index Term Link )
X
X Window System, See Trusted X Window System
Xlib
API declarations ( Index Term Link )
objects ( Index Term Link )
XTsolClientAttributes structure ( Index Term Link )
XTSOLgetClientAttributes() routine, declaration ( Index Term Link )
XTSOLgetPropAttributes() routine, declaration ( Index Term Link )
XTSOLgetPropLabel() routine, declaration ( Index Term Link )
XTSOLgetPropUID() routine, declaration ( Index Term Link )
XTSOLgetResAttributes() routine
code example ( Index Term Link )
declaration ( Index Term Link )
XTSOLgetResLabel() routine
code example ( Index Term Link )
declaration ( Index Term Link )
XTSOLgetResUID() routine
code example ( Index Term Link )
declaration ( Index Term Link )
XTSOLgetSSHeight() routine, declaration ( Index Term Link )
XTSOLgetWorkstationOwner() routine
code example ( Index Term Link )
declaration ( Index Term Link )
XTSOLIsWindowTrusted() routine, declaration ( Index Term Link )
XTSOLmakeTPWindow() routine, declaration ( Index Term Link )
XTsolPropAttributes structure ( Index Term Link )
XTsolResAttributes structure ( Index Term Link )
XTSOLsetPolyInstInfo() routine, declaration ( Index Term Link )
XTSOLsetPropLabel() routine, declaration ( Index Term Link )
XTSOLsetPropUID() routine, declaration ( Index Term Link )
XTSOLsetResLabel() routine
code example ( Index Term Link )
declaration ( Index Term Link )
XTSOLsetResUID() routine, declaration ( Index Term Link )
XTSOLsetSessionHI() routine, declaration ( Index Term Link )
XTSOLsetSessionLO() routine, declaration ( Index Term Link )
XTSOLsetSSHeight() routine, declaration ( Index Term Link )
XTSOLsetWorkstationOwner() routine, declaration ( Index Term Link )
Z
zones
APIs for zone labels and zone paths ( Index Term Link )
labeled ( Index Term Link )
mounts and the global zone ( Index Term Link )
multilevel ports ( Index Term Link )
in Trusted Extensions ( Index Term Link )