diff options
Diffstat (limited to 'applications/luci-app-banip/root/usr/share/rpcd/acl.d/luci-app-banip.json')
-rw-r--r-- | applications/luci-app-banip/root/usr/share/rpcd/acl.d/luci-app-banip.json | 91 |
1 files changed, 66 insertions, 25 deletions
diff --git a/applications/luci-app-banip/root/usr/share/rpcd/acl.d/luci-app-banip.json b/applications/luci-app-banip/root/usr/share/rpcd/acl.d/luci-app-banip.json index d0a616be6e..2a471c9dfc 100644 --- a/applications/luci-app-banip/root/usr/share/rpcd/acl.d/luci-app-banip.json +++ b/applications/luci-app-banip/root/usr/share/rpcd/acl.d/luci-app-banip.json @@ -2,37 +2,78 @@ "luci-app-banip": { "description": "Grant access to LuCI app banIP", "write": { - "uci": [ "banip" ], + "uci": [ + "banip" + ], "file": { - "/etc/banip/*": [ "read" ], - "/etc/banip/banip.blacklist": [ "write" ], - "/etc/banip/banip.whitelist": [ "write" ], - "/etc/banip/banip.maclist": [ "write" ] + "/etc/banip/*": [ + "read" + ], + "/etc/banip/banip.allowlist": [ + "write" + ], + "/etc/banip/banip.blocklist": [ + "write" + ] } }, "read": { - "cgi-io": [ "exec" ], + "cgi-io": [ + "exec" + ], "file": { - "/var/run/banip.pid": [ "read" ], - "/tmp/ban_runtime.json": [ "read" ], - "/sbin/logread -e banIP-": [ "exec" ], - "/usr/sbin/logread -e banIP-": [ "exec" ], - "/usr/sbin/iptables -L": [ "exec" ], - "/usr/sbin/ip6tables -L": [ "exec" ], - "/etc/init.d/banip list" : [ "exec" ], - "/etc/init.d/banip refresh" : [ "exec" ], - "/etc/init.d/banip reload" : [ "exec" ], - "/etc/init.d/banip restart" : [ "exec" ], - "/etc/init.d/banip suspend" : [ "exec" ], - "/etc/init.d/banip resume" : [ "exec" ], - "/etc/init.d/banip report gen" : [ "exec" ], - "/etc/init.d/banip report json" : [ "exec" ], - "/etc/init.d/banip timer list" : [ "exec" ], - "/etc/init.d/banip timer remove [0-9]*" : [ "exec" ], - "/etc/init.d/banip timer add * [0-9]* [0-9*]* [1-7,-*]*" : [ "exec" ], - "/etc/init.d/banip query *" : [ "exec" ] + "/etc/banip/banip.feeds": [ + "read" + ], + "/etc/banip/banip.countries": [ + "read" + ], + "/var/run/banip.pid": [ + "read" + ], + "/var/run/banip_runtime.json": [ + "read" + ], + "/sbin/logread -e banIP-": [ + "exec" + ], + "/usr/sbin/logread -e banIP-": [ + "exec" + ], + "/sbin/logread -e banIP/": [ + "exec" + ], + "/usr/sbin/logread -e banIP/": [ + "exec" + ], + "/usr/sbin/nft -tj list table inet banIP": [ + "exec" + ], + "/etc/init.d/banip stop": [ + "exec" + ], + "/etc/init.d/banip reload": [ + "exec" + ], + "/etc/init.d/banip restart": [ + "exec" + ], + "/etc/init.d/banip report json": [ + "exec" + ], + "/etc/init.d/banip search *": [ + "exec" + ], + "/etc/init.d/banip survey *": [ + "exec" + ], + "/etc/init.d/banip status *": [ + "exec" + ] }, - "uci": [ "banip" ] + "uci": [ + "banip" + ] } } } |