1type set_ethaddr, domain; 2type set_ethaddr_exec, exec_type, vendor_file_type, file_type; 3init_daemon_domain(set_ethaddr); 4 5allow set_ethaddr proc_cmdline:file { open read }; 6allow set_ethaddr proc_bootconfig:file { open read }; 7allow set_ethaddr rootfs:dir { open read }; 8allow set_ethaddr self:capability net_admin; 9allow set_ethaddr self:capability sys_module; 10allow set_ethaddr self:udp_socket create_socket_perms; 11allow set_ethaddr vendor_file:file execute_no_trans; 12allow set_ethaddr vendor_toolbox_exec:file execute_no_trans; 13allowxperm set_ethaddr self:udp_socket ioctl { SIOCSIFFLAGS SIOCSIFHWADDR }; 14