]> and or xor not all eq ne neq dom domby incomp range allow auditallow dontaudit neverallow auditdeny allowx auditallowx dontauditx neverallowx true false file dir char block socket pipe symlink any task trans xattr tcp udp dccp sctp self unordered allow deny reject block optional common class classmap classmapping sid user role roleattribute type classpermission typeattribute typealias tunable sensitivity sensitivityalias category categoryalias categoryset level levelrange context ipaddr macro boolean policycap mls handleunknown blockabstract blockinherit in call defaultuser defaultrole defaulttype defaultrange userrole userattribute userattributeset userlevel userrange userbounds userprefix selinuxuser selinuxuserdefault roletype roleattributeset roleallow roletransition rolebounds typealiasactual typeattributeset typebounds typechange typemember typetransition typepermissive attributetype expandtypeattribute nametypetransition classcommon classorder permission permissionset classpermissionset permissionx booleanif tunableif constrain validatetrans mlsconstrain mlsvalidatetrans sensitivityaliasactual sensitivityorder categoryaliasactual categoryorder sensitivitycategory rangetransition categoryrange sidorder sidcontext filecon fsuse genfscon fscon fsusexattr fsusetask fsusetrans netifcon nodecon portcon iomemcon ioportcon pcidevicecon pirqcon devicetreecon ibpkeycon ibendportcon dominance allowxperm auditallowxperm dontauditxperm neverallowxperm string name ioctl source target glblub low high low-high perm object_r t1 t2 t3 r1 r2 r3 u1 u2 u3 l1 l2 h1 h2 policy_capabilities##SELinux Policy filesystem##SELinux Policy