1 native-issetugid: permit <
2 native-mprotect: permit <
4 native-fsread: filename eq "/var/run/ld.so.hints" then pe <
6 native-fsread: filename match "/usr/lib/libssl.so.*" then | native-connect: sockaddr eq "inet-[127.0.0.1]:53" then pe
7 native-read: permit | native-connect: sockaddr match "inet-\\\[*\\\]:80" then p
8 native-fsread: filename match "/usr/lib/libcrypto.so.*" t | native-exit: permit
9 native-fsread: filename match "/usr/lib/libncurses.so.*" | native-fcntl: cmd eq "F_SETFD" then permit
10 native-fsread: filename match "/usr/lib/libc.so.*" then p | native-fsread: filename eq "/" then permit
11 native-munmap: permit | native-fsread: filename match "/<non-existent filename>:
12 native-sigprocmask: permit | native-fsread: filename eq "/etc/lynx.cfg" then permit
13 native-getpid: permit | native-fsread: filename eq "/etc/resolv.conf" then permit
14 > native-fsread: filename eq "/etc/utmp" then permit
15 > native-fsread: filename eq "/home" then permit
16 > native-fsread: filename eq "$HOME" then permit
17 > native-fsread: filename eq "$HOME/.lynx-keymaps" then per
18 > native-fsread: filename eq "$HOME/.lynxrc" then permit
19 > native-fsread: filename eq "$HOME/.mailcap" then permit
20 > native-fsread: filename eq "$HOME/.mime.types" then permi
21 > native-fsread: filename eq "$HOME/.terminfo" then permit
22 > native-fsread: filename eq "$HOME/.terminfo.db" then perm
23 > native-fsread: filename eq "/obj" then permit
24 native-fsread: filename eq "$HOME" then permit <
25 native-fsread: filename eq "/etc/lynx.cfg" then permit <
26 native-fsread: filename eq "/" then permit <
27 native-fsread: filename eq "/usr/obj/bin/systrace/." then <
28 native-fsread: filename eq "/usr/obj/bin" then permit <
29 native-fcntl: permit <
30 native-getdirentries: permit <
31 native-lseek: permit <
32 native-fsread: filename eq "/usr/obj" then permit <
33 native-fsread: filename eq "$HOME/.mime.types" then permi <
34 native-sigaction: permit <
35 native-ioctl: permit <
36 native-fsread: filename eq "$HOME/.terminfo.db" then perm <
37 native-fsread: filename eq "$HOME/.terminfo" then permit <
38 native-pread: permit <
39 native-write: permit <
40 native-fsread: filename eq "$HOME/.lynx-keymaps" then per <
41 native-fsread: filename eq "/etc/utmp" then permit | native-fsread: filename eq "/var/run/ld.so.hints" then pe
42 native-poll: permit | native-fstat: permit
43 native-nanosleep: permit | native-fswrite: filename match "/tmp/lynx-*" then permit
44 > native-getdirentries: permit
45 > native-getpid: permit
46 native-fsread: filename eq "/etc/resolv.conf" then permit | native-ioctl: permit
47 native-socket: sockdom eq "AF_INET" and socktype eq "SOCK | native-issetugid: permit
48 native-connect: sockaddr eq "inet-[127.0.0.1]:53" then pe | native-lseek: permit
49 native-sendto: true then permit | native-mmap: permit
50 native-select: permit | native-mprotect: prot eq "PROT_READ" then permit
51 > native-mprotect: prot eq "PROT_READ|PROT_EXEC" then permi
52 > native-mprotect: prot eq "PROT_READ|PROT_WRITE" then perm
53 > native-mprotect: prot eq "PROT_READ|PROT_WRITE|PROT_EXEC"
54 > native-munmap: permit
55 > native-nanosleep: permit
57 > native-pread: permit
59 > native-select: permit
60 > native-sendto: true then permit
61 > native-sigaction: permit
62 > native-sigprocmask: permit
63 > native-socket: sockdom eq "AF_INET" and socktype eq "SOCK
64 native-connect: sockaddr match "inet-\\\[*\\\]:80" then p | native-write: permit