1                                                              >     native-issetugid: permit
2                                                              >     native-mprotect: permit
3                                                              >     native-mmap: permit
4                                                              >     native-fsread: filename eq "/var/run/ld.so.hints" then pe
5                                                              >     native-fstat: permit
6    native-connect: sockaddr eq "inet-[127.0.0.1]:53" then pe |     native-fsread: filename match "/usr/lib/libssl.so.*" then
7    native-connect: sockaddr match "inet-\\\[*\\\]:80" then p |     native-read: permit
8    native-exit: permit                                       |     native-fsread: filename match "/usr/lib/libcrypto.so.*" t
9    native-fcntl: cmd eq "F_SETFD" then permit                |     native-fsread: filename match "/usr/lib/libncurses.so.*" 
10    native-fsread: filename eq "/" then permit                |     native-fsread: filename match "/usr/lib/libc.so.*" then p
11    native-fsread: filename match "/<non-existent filename>:  |     native-munmap: permit
12    native-fsread: filename eq "/etc/lynx.cfg" then permit    |     native-sigprocmask: permit
13    native-fsread: filename eq "/etc/resolv.conf" then permit |     native-getpid: permit
14    native-fsread: filename eq "/etc/utmp" then permit        <
15    native-fsread: filename eq "/home" then permit            <
16    native-fsread: filename eq "$HOME" then permit            <
17    native-fsread: filename eq "$HOME/.lynx-keymaps" then per <
18    native-fsread: filename eq "$HOME/.lynxrc" then permit    <
19    native-fsread: filename eq "$HOME/.mailcap" then permit   <
20    native-fsread: filename eq "$HOME/.mime.types" then permi <
21    native-fsread: filename eq "$HOME/.terminfo" then permit  <
22    native-fsread: filename eq "$HOME/.terminfo.db" then perm <
23    native-fsread: filename eq "/obj" then permit             <
24                                                              >     native-fsread: filename eq "$HOME" then permit
25                                                              >     native-fsread: filename eq "/etc/lynx.cfg" then permit
26                                                              >     native-fsread: filename eq "/" then permit
27                                                              >     native-fsread: filename eq "/usr/obj/bin/systrace/." then
28                                                              >     native-fsread: filename eq "/usr/obj/bin" then permit
29                                                              >     native-fcntl: permit
30                                                              >     native-getdirentries: permit
31                                                              >     native-lseek: permit
32                                                              >     native-fsread: filename eq "/usr/obj" then permit
33                                                              >     native-fsread: filename eq "$HOME/.mime.types" then permi
34                                                              >     native-sigaction: permit
35                                                              >     native-ioctl: permit
36                                                              >     native-fsread: filename eq "$HOME/.terminfo.db" then perm
37                                                              >     native-fsread: filename eq "$HOME/.terminfo" then permit
38                                                              >     native-pread: permit
39                                                              >     native-write: permit
40                                                              >     native-fsread: filename eq "$HOME/.lynx-keymaps" then per
41    native-fsread: filename eq "/var/run/ld.so.hints" then pe |     native-fsread: filename eq "/etc/utmp" then permit
42    native-fstat: permit                                      <
43    native-fswrite: filename match "/tmp/lynx-*" then permit  <
44    native-getdirentries: permit                              <
45    native-getpid: permit                                     <
46    native-gettimeofday: permit                               <
47    native-ioctl: permit                                      <
48    native-issetugid: permit                                  <
49    native-lseek: permit                                      <
50    native-mmap: permit                                       <
51    native-mprotect: prot eq "PROT_READ" then permit          <
52    native-mprotect: prot eq "PROT_READ|PROT_EXEC" then permi <
53    native-mprotect: prot eq "PROT_READ|PROT_WRITE" then perm <
54    native-mprotect: prot eq "PROT_READ|PROT_WRITE|PROT_EXEC" <
55    native-munmap: permit                                     <
56    native-nanosleep: permit                                  <
57    native-pread: permit                                      |     native-nanosleep: permit
58    native-read: permit                                       |     native-gettimeofday: permit
59    native-recvfrom: permit                                   |     native-fsread: filename eq "/etc/resolv.conf" then permit
60    native-select: permit                                     <
61    native-sendto: true then permit                           <
62    native-sigaction: permit                                  <
63    native-sigprocmask: permit                                <
64                                                              >     native-connect: sockaddr eq "inet-[127.0.0.1]:53" then pe
65                                                              >     native-sendto: true then permit
66                                                              >     native-select: permit
67                                                              >     native-recvfrom: permit
68    native-write: permit                                      |     native-connect: sockaddr match "inet-\\\[*\\\]:80" then p
69                                                              >     native-exit: permit
70