* Fri Mar 13 2020 Zdenek Pytela <zpytela@redhat.com> - 3.14.6-8

- Allow NetworkManager read its unit files and manage services
- Add init_daemon_domain() for geoclue_t
- Allow to use nnp_transition in pulseaudio_role
- Allow pdns_t domain to map files in /usr.
- Label all NetworkManager fortisslvpn plugins as openfortivpn_exec_t
- Allow login_pgm create and bind on netlink_selinux_socket
This commit is contained in:
Zdenek Pytela 2020-03-13 09:22:23 +01:00
parent 7579dcf465
commit e3700463c8
3 changed files with 16 additions and 6 deletions

2
.gitignore vendored
View File

@ -448,3 +448,5 @@ serefpolicy*
/selinux-policy-deadfd1.tar.gz
/selinux-policy-ff8908f.tar.gz
/selinux-policy-contrib-5406e9a.tar.gz
/selinux-policy-contrib-d504071.tar.gz
/selinux-policy-649b10d.tar.gz

View File

@ -1,11 +1,11 @@
# github repo with selinux-policy base sources
%global git0 https://github.com/fedora-selinux/selinux-policy
%global commit0 ff8908fb2162625769f20f937e2882067a497885
%global commit0 649b10d5388475271c48b0c4a3892c475dbc4a1b
%global shortcommit0 %(c=%{commit0}; echo ${c:0:7})
# github repo with selinux-policy contrib sources
%global git1 https://github.com/fedora-selinux/selinux-policy-contrib
%global commit1 5406e9a4f4ae4a95e15fea717ccfa63fe4835264
%global commit1 d504071e851e1710816970154529d2afcf8f856c
%global shortcommit1 %(c=%{commit1}; echo ${c:0:7})
%define distro redhat
@ -29,7 +29,7 @@
Summary: SELinux policy configuration
Name: selinux-policy
Version: 3.14.6
Release: 7%{?dist}
Release: 8%{?dist}
License: GPLv2+
Source: %{git0}/archive/%{commit0}/%{name}-%{shortcommit0}.tar.gz
Source29: %{git1}/archive/%{commit1}/%{name}-contrib-%{shortcommit1}.tar.gz
@ -772,6 +772,14 @@ exit 0
%endif
%changelog
* Fri Mar 13 2020 Zdenek Pytela <zpytela@redhat.com> - 3.14.6-8
- Allow NetworkManager read its unit files and manage services
- Add init_daemon_domain() for geoclue_t
- Allow to use nnp_transition in pulseaudio_role
- Allow pdns_t domain to map files in /usr.
- Label all NetworkManager fortisslvpn plugins as openfortivpn_exec_t
- Allow login_pgm create and bind on netlink_selinux_socket
* Mon Mar 09 2020 Zdenek Pytela <zpytela@redhat.com> - 3.14.6-7
- Allow sssd read systemd-resolved runtime directory
- Allow sssd read NetworkManager's runtime directory

View File

@ -1,4 +1,4 @@
SHA512 (selinux-policy-ff8908f.tar.gz) = 7ab917890dd7ac07c8147523b09bb397b34a9819a44ce06514896f70f96e3d257a18f347f52f226fd6d9ca077f3fd4f61df138fa30d9acc1daff56dcfe5d60ea
SHA512 (selinux-policy-contrib-5406e9a.tar.gz) = d169411164627b571de59d658432a20e3223b1772a4703ac3cf08edd556365bac61bd45db4c96617733d40bda1e28de636e0785a938cc101d8e7982fb9183a3c
SHA512 (container-selinux.tgz) = ecfd858fda76718436dbedc97935a0ec8f8d588441a719d186013912e7d70fa35e2752978b979e4b5d43f6b5627594a1cd7299d1bdd06dcae969f45ffc5e326f
SHA512 (selinux-policy-contrib-d504071.tar.gz) = e2f57f2f12ce7ebc3e662a2778405594975d1d1c7fb4fe69253dc75f5073e8a47bc961ef0ccf177c818864f88be8b45211b97df35628e96e503f6c18032b7a99
SHA512 (selinux-policy-649b10d.tar.gz) = 1132e29f7bec4d4a2edada518df14422859461403f9375dfcb326faa64dff9f04f27c7fdb1bde897695c37708c62aa78de5d85c5b58108c2ef6d1568b3fbf4c5
SHA512 (container-selinux.tgz) = 6cbc0844f782a806e402030fd9e6a1929ae81cfeebdc6436f40decca317bca5dcb2df1fa9841e1e0086e922e4a729f9079efd1184bf002547d95090c277da987
SHA512 (macro-expander) = 243ee49f1185b78ac47e56ca9a3f3592f8975fab1a2401c0fcc7f88217be614fe31805bacec602b728e7fcfc21dcc17d90e9a54ce87f3a0c97624d9ad885aea4