169408Sache                                                              >     native-issetugid: permit
269408Sache                                                              >     native-mprotect: permit
3100616Smp                                                              >     native-mmap: permit
4231990Smp                                                              >     native-fsread: filename eq "/var/run/ld.so.hints" then pe
5195609Smp                                                              >     native-fstat: permit
6100616Smp    native-connect: sockaddr eq "inet-[127.0.0.1]:53" then pe |     native-fsread: filename match "/usr/lib/libssl.so.*" then
7231990Smp    native-connect: sockaddr match "inet-\\\[*\\\]:80" then p |     native-read: permit
8100616Smp    native-exit: permit                                       |     native-fsread: filename match "/usr/lib/libcrypto.so.*" t
969408Sache    native-fcntl: cmd eq "F_SETFD" then permit                |     native-fsread: filename match "/usr/lib/libncurses.so.*" 
1069408Sache    native-fsread: filename eq "/" then permit                |     native-fsread: filename match "/usr/lib/libc.so.*" then p
1169408Sache    native-fsread: filename match "/<non-existent filename>:  |     native-munmap: permit
1269408Sache    native-fsread: filename eq "/etc/lynx.cfg" then permit    |     native-sigprocmask: permit
1369408Sache    native-fsread: filename eq "/etc/resolv.conf" then permit |     native-getpid: permit
1469408Sache    native-fsread: filename eq "/etc/utmp" then permit        <
1569408Sache    native-fsread: filename eq "/home" then permit            <
1669408Sache    native-fsread: filename eq "$HOME" then permit            <
1769408Sache    native-fsread: filename eq "$HOME/.lynx-keymaps" then per <
1869408Sache    native-fsread: filename eq "$HOME/.lynxrc" then permit    <
1969408Sache    native-fsread: filename eq "$HOME/.mailcap" then permit   <
2069408Sache    native-fsread: filename eq "$HOME/.mime.types" then permi <
21195609Smp    native-fsread: filename eq "$HOME/.terminfo" then permit  <
22195609Smp    native-fsread: filename eq "$HOME/.terminfo.db" then perm <
2369408Sache    native-fsread: filename eq "/obj" then permit             <
2469408Sache                                                              >     native-fsread: filename eq "$HOME" then permit
2569408Sache                                                              >     native-fsread: filename eq "/etc/lynx.cfg" then permit
2669408Sache                                                              >     native-fsread: filename eq "/" then permit
2769408Sache                                                              >     native-fsread: filename eq "/usr/obj/bin/systrace/." then
2869408Sache                                                              >     native-fsread: filename eq "/usr/obj/bin" then permit
29195609Smp                                                              >     native-fcntl: permit
30231990Smp                                                              >     native-getdirentries: permit
31231990Smp                                                              >     native-lseek: permit
32231990Smp                                                              >     native-fsread: filename eq "/usr/obj" then permit
3369408Sache                                                              >     native-fsread: filename eq "$HOME/.mime.types" then permi
3469408Sache                                                              >     native-sigaction: permit
3569408Sache                                                              >     native-ioctl: permit
3669408Sache                                                              >     native-fsread: filename eq "$HOME/.terminfo.db" then perm
3769408Sache                                                              >     native-fsread: filename eq "$HOME/.terminfo" then permit
38231990Smp                                                              >     native-pread: permit
39231990Smp                                                              >     native-write: permit
4069408Sache                                                              >     native-fsread: filename eq "$HOME/.lynx-keymaps" then per
41100616Smp    native-fsread: filename eq "/var/run/ld.so.hints" then pe |     native-fsread: filename eq "/etc/utmp" then permit
42100616Smp    native-fstat: permit                                      <
43100616Smp    native-fswrite: filename match "/tmp/lynx-*" then permit  <
44100616Smp    native-getdirentries: permit                              <
45100616Smp    native-getpid: permit                                     <
46100616Smp    native-gettimeofday: permit                               <
47100616Smp    native-ioctl: permit                                      <
48100616Smp    native-issetugid: permit                                  <
49100616Smp    native-lseek: permit                                      <
50100616Smp    native-mmap: permit                                       <
51100616Smp    native-mprotect: prot eq "PROT_READ" then permit          <
52100616Smp    native-mprotect: prot eq "PROT_READ|PROT_EXEC" then permi <
53100616Smp    native-mprotect: prot eq "PROT_READ|PROT_WRITE" then perm <
54100616Smp    native-mprotect: prot eq "PROT_READ|PROT_WRITE|PROT_EXEC" <
55100616Smp    native-munmap: permit                                     <
56100616Smp    native-nanosleep: permit                                  <
57100616Smp    native-pread: permit                                      |     native-nanosleep: permit
58100616Smp    native-read: permit                                       |     native-gettimeofday: permit
59231990Smp    native-recvfrom: permit                                   |     native-fsread: filename eq "/etc/resolv.conf" then permit
60231990Smp    native-select: permit                                     <
61231990Smp    native-sendto: true then permit                           <
62100616Smp    native-sigaction: permit                                  <
63100616Smp    native-sigprocmask: permit                                <
64100616Smp                                                              >     native-connect: sockaddr eq "inet-[127.0.0.1]:53" then pe
65100616Smp                                                              >     native-sendto: true then permit
66100616Smp                                                              >     native-select: permit
67100616Smp                                                              >     native-recvfrom: permit
68100616Smp    native-write: permit                                      |     native-connect: sockaddr match "inet-\\\[*\\\]:80" then p
69100616Smp                                                              >     native-exit: permit
70100616Smp