* Thu Feb 03 2022 Zdenek Pytela <zpytela@redhat.com> - 36.1-1
- Label exFAT utilities at /usr/sbin - policy/modules/contrib: Support /usr/lib/sysimage/rpm as the rpmdb path - Enable genfs_seclabel_symlinks policy capability - Sync policy/policy_capabilities with refpolicy - refpolicy: drop unused socket security classes - Label new utility of NetworkManager nm-priv-helper - Label NetworkManager-dispatcher service with separate context - Allow sanlock get attributes of filesystems with extended attributes - Associate stratisd_data_t with device filesystem - Allow init read stratis data symlinks
This commit is contained in:
parent
7774d24565
commit
a2b5a0667a
@ -1,6 +1,6 @@
|
|||||||
# github repo with selinux-policy sources
|
# github repo with selinux-policy sources
|
||||||
%global giturl https://github.com/fedora-selinux/selinux-policy
|
%global giturl https://github.com/fedora-selinux/selinux-policy
|
||||||
%global commit 569208d534e1a53d75b187ec44ecda856ee6139c
|
%global commit d94a645307b0e9de23bf9dd560b30e30dd72ec65
|
||||||
%global shortcommit %(c=%{commit}; echo ${c:0:7})
|
%global shortcommit %(c=%{commit}; echo ${c:0:7})
|
||||||
|
|
||||||
%define distro redhat
|
%define distro redhat
|
||||||
@ -23,7 +23,7 @@
|
|||||||
%define CHECKPOLICYVER 3.2
|
%define CHECKPOLICYVER 3.2
|
||||||
Summary: SELinux policy configuration
|
Summary: SELinux policy configuration
|
||||||
Name: selinux-policy
|
Name: selinux-policy
|
||||||
Version: 35.13
|
Version: 36.1
|
||||||
Release: 1%{?dist}
|
Release: 1%{?dist}
|
||||||
License: GPLv2+
|
License: GPLv2+
|
||||||
Source: %{giturl}/archive/%{commit}/%{name}-%{shortcommit}.tar.gz
|
Source: %{giturl}/archive/%{commit}/%{name}-%{shortcommit}.tar.gz
|
||||||
@ -808,6 +808,18 @@ exit 0
|
|||||||
%endif
|
%endif
|
||||||
|
|
||||||
%changelog
|
%changelog
|
||||||
|
* Thu Feb 03 2022 Zdenek Pytela <zpytela@redhat.com> - 36.1-1
|
||||||
|
- Label exFAT utilities at /usr/sbin
|
||||||
|
- policy/modules/contrib: Support /usr/lib/sysimage/rpm as the rpmdb path
|
||||||
|
- Enable genfs_seclabel_symlinks policy capability
|
||||||
|
- Sync policy/policy_capabilities with refpolicy
|
||||||
|
- refpolicy: drop unused socket security classes
|
||||||
|
- Label new utility of NetworkManager nm-priv-helper
|
||||||
|
- Label NetworkManager-dispatcher service with separate context
|
||||||
|
- Allow sanlock get attributes of filesystems with extended attributes
|
||||||
|
- Associate stratisd_data_t with device filesystem
|
||||||
|
- Allow init read stratis data symlinks
|
||||||
|
|
||||||
* Tue Feb 01 2022 Zdenek Pytela <zpytela@redhat.com> - 35.13-1
|
* Tue Feb 01 2022 Zdenek Pytela <zpytela@redhat.com> - 35.13-1
|
||||||
- Allow systemd services watch dbusd pid directory and its parents
|
- Allow systemd services watch dbusd pid directory and its parents
|
||||||
- Allow ModemManager connect to the unconfined user domain
|
- Allow ModemManager connect to the unconfined user domain
|
||||||
|
4
sources
4
sources
@ -1,3 +1,3 @@
|
|||||||
SHA512 (selinux-policy-569208d.tar.gz) = 395c23468251a23fc88c1b82af4e56482ec4cba9f147816210d703c92b406fe19f46d9bc874fd96c7276881588e1852042e7a42af440b7cc99ed6509907060a7
|
SHA512 (selinux-policy-d94a645.tar.gz) = c181903e0686c3f417013ed74eeea49bce62bf85be7c0f94d5430b33c2915612961747b17644c3048bf9279222ee7aa751108ed05e1c02f24d5b7dde9ae5e0cc
|
||||||
|
SHA512 (container-selinux.tgz) = 01e57d978ecb20d8edcc35512bf2f57294c614fe784d61af3c6574b1fe1293e81e0701dd7a1f7795c6d57811d82091893c7826e27515dfd49aabbece280e2726
|
||||||
SHA512 (macro-expander) = 243ee49f1185b78ac47e56ca9a3f3592f8975fab1a2401c0fcc7f88217be614fe31805bacec602b728e7fcfc21dcc17d90e9a54ce87f3a0c97624d9ad885aea4
|
SHA512 (macro-expander) = 243ee49f1185b78ac47e56ca9a3f3592f8975fab1a2401c0fcc7f88217be614fe31805bacec602b728e7fcfc21dcc17d90e9a54ce87f3a0c97624d9ad885aea4
|
||||||
SHA512 (container-selinux.tgz) = 178aacf5e3fdc0b518d14f423ea7c82e50ec4b93fe2b435db0ce3a660c97dcbb1b2aaa8c18a8ef8613daafccb5a5a7c2a7ce6f2ac2e4be37b05960a7dc1bbead
|
|
||||||
|
Loading…
Reference in New Issue
Block a user