... }
would apply only to the file in the zone "app_zone" and not in the global zone.
Note that in this release, web server protection cannot be restricted to a particular zone.
Solaris class UNIX_map
The following table lists the possible sections and values for the Solaris class Unix_map:
Notes
Values
Section
Use this class to map UNIX files or devices into
memory.
UNIX_map
Class
See
Common sections.
Id
level
time
user_name
Executable
Solaris 10 or later.
Name of the zone to which the
signature applies
zone
Sets the access protection of memory pages.
mmap:mprotect
directives
Maps files or devices into memory.
mmap:mmap
Solaris class UNIX_GUID
The following table lists the possible sections and values for the Solaris class UNIX_GUID:
Notes
Values
Section
Use this class to set Unix access rights flags that
allow users to run an executable with the
permissions of the executable's owner or group.
UNIX_GUID
Class
See
Common sections.
Id
level
time
user_name
Executable
Solaris 10 or later.
Name of the zone to which the
signature applies
zone
Sets user ID to allow a user to run an executable
with the permissions of the executable's owner.
guid:setuid
directives
Sets effective user ID.
guid:seteuid
Sets the real and effective user ID.
guid:setreuid
Sets group ID to allow a group to run an
executable with the permissions of the
executable's group.
guid:setgid
Sets effective group ID.
guid:setegid
Appendix A — Writing Custom Signatures and Exceptions
Non-Windows custom signatures
133
McAfee Host Intrusion Prevention 8.0 Product Guide for ePolicy Orchestrator 4.5