<def-group>
  <definition class="compliance" id="sebool_antivirus_can_scan_system" version="1">
    <metadata>
        <title>Enable the antivirus_can_scan_system SELinux Boolean</title>
        
    <affected family="unix">
    <platform>Ubuntu 22.04</platform>
    </affected>
        <description>The SELinux 'antivirus_can_scan_system' boolean should be set in the system configuration.</description>
    </metadata>
    <criteria>
      <criterion comment="antivirus_can_scan_system is configured correctly" test_ref="test_sebool_antivirus_can_scan_system" />
    </criteria>
  </definition>

  <linux:selinuxboolean_test check="all" check_existence="all_exist" comment="antivirus_can_scan_system is configured correctly" id="test_sebool_antivirus_can_scan_system" version="1">
    <linux:object object_ref="object_sebool_antivirus_can_scan_system" />
    <linux:state state_ref="state_sebool_antivirus_can_scan_system" />
  </linux:selinuxboolean_test>

  <linux:selinuxboolean_object id="object_sebool_antivirus_can_scan_system" version="1">
    <linux:name>antivirus_can_scan_system</linux:name>
  </linux:selinuxboolean_object>

  <linux:selinuxboolean_state id="state_sebool_antivirus_can_scan_system" version="1">
    <linux:name>antivirus_can_scan_system</linux:name>
    
      <linux:current_status datatype="boolean" var_ref="var_antivirus_can_scan_system"/>
      <linux:pending_status datatype="boolean" var_ref="var_antivirus_can_scan_system"/>
    
  </linux:selinuxboolean_state>

  
    <external_variable comment="external variable for antivirus_can_scan_system" datatype="boolean" id="var_antivirus_can_scan_system" version="1" />
  
</def-group>