* Fri Apr 12 2019 Lukas Vrabec <lvrabec@redhat.com> - 3.14.4-11

- Allow mongod_t domain to lsearch in cgroups BZ(1698743)
- Allow rngd communication with pcscd BZ(1679217)
- Create cockpit_tmpfs_t and allow cockpit ws and session to use it BZ(1698405)
- Fix broken networkmanager interface for allowing manage lib files for dnsmasq_t.
- Update logging_send_audit_msgs(sudodomain() to control TTY auditing for netlink socket for audit service
This commit is contained in:
Lukas Vrabec 2019-04-12 23:24:21 +02:00
parent 65936499bd
commit 05bc3ebd5c
No known key found for this signature in database
GPG Key ID: 47201AC42F29CE06
3 changed files with 15 additions and 6 deletions

2
.gitignore vendored
View File

@ -360,3 +360,5 @@ serefpolicy*
/selinux-policy-contrib-8659df1.tar.gz
/selinux-policy-f8a2347.tar.gz
/selinux-policy-379f4fb.tar.gz
/selinux-policy-2163c68.tar.gz
/selinux-policy-contrib-b78d1b1.tar.gz

View File

@ -1,11 +1,11 @@
# github repo with selinux-policy base sources
%global git0 https://github.com/fedora-selinux/selinux-policy
%global commit0 379f4fb842e1b2c7a4b7c365265e0bdab52b2be4
%global commit0 2163c68418f8ac9e3ae8fa57bb0068a6b648f109
%global shortcommit0 %(c=%{commit0}; echo ${c:0:7})
# github repo with selinux-policy contrib sources
%global git1 https://github.com/fedora-selinux/selinux-policy-contrib
%global commit1 8659df15169ae04f8e92992709feb826fb22016b
%global commit1 b78d1b1ed3768cb6241486b76edd9b473fe60e6f
%global shortcommit1 %(c=%{commit1}; echo ${c:0:7})
%define distro redhat
@ -29,7 +29,7 @@
Summary: SELinux policy configuration
Name: selinux-policy
Version: 3.14.4
Release: 10%{?dist}
Release: 11%{?dist}
License: GPLv2+
Source: %{git0}/archive/%{commit0}/%{name}-%{shortcommit0}.tar.gz
Source29: %{git1}/archive/%{commit1}/%{name}-contrib-%{shortcommit1}.tar.gz
@ -787,6 +787,13 @@ exit 0
%endif
%changelog
* Fri Apr 12 2019 Lukas Vrabec <lvrabec@redhat.com> - 3.14.4-11
- Allow mongod_t domain to lsearch in cgroups BZ(1698743)
- Allow rngd communication with pcscd BZ(1679217)
- Create cockpit_tmpfs_t and allow cockpit ws and session to use it BZ(1698405)
- Fix broken networkmanager interface for allowing manage lib files for dnsmasq_t.
- Update logging_send_audit_msgs(sudodomain() to control TTY auditing for netlink socket for audit service
* Tue Apr 09 2019 Lukas Vrabec <lvrabec@redhat.com> - 3.14.4-10
- Allow systemd_modules_load to read modules_dep_t files
- Allow systemd labeled as init_t to setattr on unallocated ttys BZ(1697667)

View File

@ -1,4 +1,4 @@
SHA512 (selinux-policy-contrib-8659df1.tar.gz) = 3b153d7b5190452561e1b6253dcdebac1e8cf20d071734b44f38f0e74b3106a5158a1fbcd004d2b29befaed98cda30a937bc4f38a60be13f2943c57b61296cac
SHA512 (selinux-policy-379f4fb.tar.gz) = 41aabd4e2b63a672e111f0b1ebeb4ee7a9de2e692c43a511856fb02d0c2b42e2d01db617cd4eacf2c0b8d57f4b319f549c7926d444be5defa595a9b79a9652fb
SHA512 (container-selinux.tgz) = dc94c04569fd70e7a4dd955f0b9e50c19e8900fd89659cef0f7001cdd6248e2b535923dd36694ed99cc7dccaf696e1dd18dae91a29b767c9b50f9452de8b6163
SHA512 (selinux-policy-2163c68.tar.gz) = 39ede15834630559eeb14645246ebb734f342d63d25c95442231ab8044faa22e601c3c7323acea6289ecccd601bb701bb5f7dd7f70b2c94a421f1802a3c52713
SHA512 (selinux-policy-contrib-b78d1b1.tar.gz) = fcd40a98b4cb183d4f7daa2ebe63412554651f31c2639c86b9a67324d273ea25e4e1529e546a0a6a21160e19594dc11c63c30344d2a2b0b4933c247468922c29
SHA512 (container-selinux.tgz) = 1b38f927429674c50533eca11ea726579bfd207453474fafae1c0949004fc1ccd7a7cadd6ad01682ff0a1e706a9475c2ccf85d4712f2d43b967c04e200b7f860
SHA512 (macro-expander) = b4f26e7ed6c32b3d7b3f1244e549a0e68cb387ab5276c4f4e832a9a6b74b08bea2234e8064549d47d1b272dbd22ef0f7c6b94cd307cc31ab872f9b68206021b2