blob: b7a6a9db31877b20b9a6d1a404b739b988b7c99b [file] [log] [blame]
# Copyright 2014, 2016, Tresys Technology, LLC
#
# This file is part of SETools.
#
# SETools is free software: you can redistribute it and/or modify
# it under the terms of the GNU Lesser General Public License as
# published by the Free Software Foundation, either version 2.1 of
# the License, or (at your option) any later version.
#
# SETools is distributed in the hope that it will be useful,
# but WITHOUT ANY WARRANTY; without even the implied warranty of
# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
# GNU Lesser General Public License for more details.
#
# You should have received a copy of the GNU Lesser General Public
# License along with SETools. If not, see
# <http://www.gnu.org/licenses/>.
#
from . import exception
from . import symbol
from . import objclass
class PolicyRule(symbol.PolicySymbol):
"""This is base class for policy rules."""
def __str__(self):
raise NotImplementedError
def __hash__(self):
try:
cond = self.conditional
cond_block = self.conditional_block
except exception.RuleNotConditional:
cond = None
cond_block = None
return hash("{0.ruletype}|{0.source}|{0.target}|{0.tclass}|{1}|{2}".format(
self, cond, cond_block))
@property
def ruletype(self):
"""The rule type for the rule."""
return self.qpol_symbol.rule_type(self.policy)
@property
def source(self):
"""
The source for the rule. This should be overridden by
subclasses.
"""
raise NotImplementedError
@property
def target(self):
"""
The target for the rule. This should be overridden by
subclasses.
"""
raise NotImplementedError
@property
def tclass(self):
"""The object class for the rule."""
return objclass.class_factory(self.policy, self.qpol_symbol.object_class(self.policy))
@property
def default(self):
"""
The default for the rule. This should be overridden by
subclasses.
"""
raise NotImplementedError
@property
def conditional(self):
"""The conditional expression for this rule."""
# Most rules cannot be conditional.
raise exception.RuleNotConditional
@property
def conditional_block(self):
"""The conditional block of the rule (T/F)"""
# Most rules cannot be conditional.
raise exception.RuleNotConditional
def expand(self):
"""Expand the rule into an equivalent set of rules without attributes."""
raise NotImplementedError
def statement(self):
return str(self)