From e3700463c876bcb97969611fd85aed7c7c0fd521 Mon Sep 17 00:00:00 2001 From: Zdenek Pytela Date: Fri, 13 Mar 2020 09:22:23 +0100 Subject: [PATCH] * Fri Mar 13 2020 Zdenek Pytela - 3.14.6-8 - Allow NetworkManager read its unit files and manage services - Add init_daemon_domain() for geoclue_t - Allow to use nnp_transition in pulseaudio_role - Allow pdns_t domain to map files in /usr. - Label all NetworkManager fortisslvpn plugins as openfortivpn_exec_t - Allow login_pgm create and bind on netlink_selinux_socket --- .gitignore | 2 ++ selinux-policy.spec | 14 +++++++++++--- sources | 6 +++--- 3 files changed, 16 insertions(+), 6 deletions(-) diff --git a/.gitignore b/.gitignore index e85e6ddb..a25b98d5 100644 --- a/.gitignore +++ b/.gitignore @@ -448,3 +448,5 @@ serefpolicy* /selinux-policy-deadfd1.tar.gz /selinux-policy-ff8908f.tar.gz /selinux-policy-contrib-5406e9a.tar.gz +/selinux-policy-contrib-d504071.tar.gz +/selinux-policy-649b10d.tar.gz diff --git a/selinux-policy.spec b/selinux-policy.spec index 373d8830..04311b06 100644 --- a/selinux-policy.spec +++ b/selinux-policy.spec @@ -1,11 +1,11 @@ # github repo with selinux-policy base sources %global git0 https://github.com/fedora-selinux/selinux-policy -%global commit0 ff8908fb2162625769f20f937e2882067a497885 +%global commit0 649b10d5388475271c48b0c4a3892c475dbc4a1b %global shortcommit0 %(c=%{commit0}; echo ${c:0:7}) # github repo with selinux-policy contrib sources %global git1 https://github.com/fedora-selinux/selinux-policy-contrib -%global commit1 5406e9a4f4ae4a95e15fea717ccfa63fe4835264 +%global commit1 d504071e851e1710816970154529d2afcf8f856c %global shortcommit1 %(c=%{commit1}; echo ${c:0:7}) %define distro redhat @@ -29,7 +29,7 @@ Summary: SELinux policy configuration Name: selinux-policy Version: 3.14.6 -Release: 7%{?dist} +Release: 8%{?dist} License: GPLv2+ Source: %{git0}/archive/%{commit0}/%{name}-%{shortcommit0}.tar.gz Source29: %{git1}/archive/%{commit1}/%{name}-contrib-%{shortcommit1}.tar.gz @@ -772,6 +772,14 @@ exit 0 %endif %changelog +* Fri Mar 13 2020 Zdenek Pytela - 3.14.6-8 +- Allow NetworkManager read its unit files and manage services +- Add init_daemon_domain() for geoclue_t +- Allow to use nnp_transition in pulseaudio_role +- Allow pdns_t domain to map files in /usr. +- Label all NetworkManager fortisslvpn plugins as openfortivpn_exec_t +- Allow login_pgm create and bind on netlink_selinux_socket + * Mon Mar 09 2020 Zdenek Pytela - 3.14.6-7 - Allow sssd read systemd-resolved runtime directory - Allow sssd read NetworkManager's runtime directory diff --git a/sources b/sources index 211a9192..6ae25d49 100644 --- a/sources +++ b/sources @@ -1,4 +1,4 @@ -SHA512 (selinux-policy-ff8908f.tar.gz) = 7ab917890dd7ac07c8147523b09bb397b34a9819a44ce06514896f70f96e3d257a18f347f52f226fd6d9ca077f3fd4f61df138fa30d9acc1daff56dcfe5d60ea -SHA512 (selinux-policy-contrib-5406e9a.tar.gz) = d169411164627b571de59d658432a20e3223b1772a4703ac3cf08edd556365bac61bd45db4c96617733d40bda1e28de636e0785a938cc101d8e7982fb9183a3c -SHA512 (container-selinux.tgz) = ecfd858fda76718436dbedc97935a0ec8f8d588441a719d186013912e7d70fa35e2752978b979e4b5d43f6b5627594a1cd7299d1bdd06dcae969f45ffc5e326f +SHA512 (selinux-policy-contrib-d504071.tar.gz) = e2f57f2f12ce7ebc3e662a2778405594975d1d1c7fb4fe69253dc75f5073e8a47bc961ef0ccf177c818864f88be8b45211b97df35628e96e503f6c18032b7a99 +SHA512 (selinux-policy-649b10d.tar.gz) = 1132e29f7bec4d4a2edada518df14422859461403f9375dfcb326faa64dff9f04f27c7fdb1bde897695c37708c62aa78de5d85c5b58108c2ef6d1568b3fbf4c5 +SHA512 (container-selinux.tgz) = 6cbc0844f782a806e402030fd9e6a1929ae81cfeebdc6436f40decca317bca5dcb2df1fa9841e1e0086e922e4a729f9079efd1184bf002547d95090c277da987 SHA512 (macro-expander) = 243ee49f1185b78ac47e56ca9a3f3592f8975fab1a2401c0fcc7f88217be614fe31805bacec602b728e7fcfc21dcc17d90e9a54ce87f3a0c97624d9ad885aea4