* Fri Jan 19 2018 Lukas Vrabec <lvrabec@redhat.com> - 3.14.1-3

- Merge pull request #45 from jlebon/pr/rot-sd-dbus-rawhide
- Allow virt_domains to acces infiniband pkeys.
- Allow systemd to relabelfrom tmpfs_t link files in /var/run/systemd/units/ BZ(1535180)
- Label /usr/libexec/ipsec/addconn as ipsec_exec_t to run this script as ipsec_t instead of init_t
- Allow audisp_remote_t domain write to files on all levels
This commit is contained in:
Lukas Vrabec 2018-01-19 12:48:25 +01:00
parent de6ed4b466
commit e7bae02f22
3 changed files with 15 additions and 6 deletions

2
.gitignore vendored
View File

@ -239,3 +239,5 @@ serefpolicy*
/selinux-policy-f6aa4d6.tar.gz
/selinux-policy-cc4a892.tar.gz
/selinux-policy-contrib-68a780b.tar.gz
/selinux-policy-0087f3e.tar.gz
/selinux-policy-contrib-93c9a53.tar.gz

View File

@ -1,11 +1,11 @@
# github repo with selinux-policy base sources
%global git0 https://github.com/fedora-selinux/selinux-policy
%global commit0 cc4a89232bf2da1ca582fcd25003b83274f691d9
%global commit0 0087f3e102d17ccd709e91873493ad4367a4604e
%global shortcommit0 %(c=%{commit0}; echo ${c:0:7})
# github repo with selinux-policy contrib sources
%global git1 https://github.com/fedora-selinux/selinux-policy-contrib
%global commit1 68a780b819ad5aa501d9f9a5e043c92628839a06
%global commit1 93c9a53f55dfee388e5b7e945fc19b4283fe9b3a
%global shortcommit1 %(c=%{commit1}; echo ${c:0:7})
%define distro redhat
@ -29,7 +29,7 @@
Summary: SELinux policy configuration
Name: selinux-policy
Version: 3.14.1
Release: 2%{?dist}
Release: 3%{?dist}
License: GPLv2+
Group: System Environment/Base
Source: %{git0}/archive/%{commit0}/%{name}-%{shortcommit0}.tar.gz
@ -719,6 +719,13 @@ exit 0
%endif
%changelog
* Fri Jan 19 2018 Lukas Vrabec <lvrabec@redhat.com> - 3.14.1-3
- Merge pull request #45 from jlebon/pr/rot-sd-dbus-rawhide
- Allow virt_domains to acces infiniband pkeys.
- Allow systemd to relabelfrom tmpfs_t link files in /var/run/systemd/units/ BZ(1535180)
- Label /usr/libexec/ipsec/addconn as ipsec_exec_t to run this script as ipsec_t instead of init_t
- Allow audisp_remote_t domain write to files on all levels
* Mon Jan 15 2018 Lukas Vrabec <lvrabec@redhat.com> - 3.14.1-2
- Allow aide to mmap usr_t files BZ(1534182)
- Allow ypserv_t domain to connect to tcp ports BZ(1534245)

View File

@ -1,3 +1,3 @@
SHA512 (container-selinux.tgz) = e1c2d6757378eb930e65838d3e0a623d037e6734ae708202fe1d715e176131a251a76f190a483292ea9d4dba76df43cab59a66364f4b62b49d41c4bf336ebf14
SHA512 (selinux-policy-cc4a892.tar.gz) = 7e3876249bc0659739f6edcfe4f4053d503c7f4e09a895463adf838cc722dca9e92af65f62b1e8fed3371408b0326b79eebb232ce7f8868c5c88c31e600a36d6
SHA512 (selinux-policy-contrib-68a780b.tar.gz) = 17680ca2c6f49ea253e219346017d80b21edc8efaf94cec576073f49ab3ad7902e61ecef97bfcccf180921b14de60cea74443753381efcdd272ecba1bbf0199e
SHA512 (selinux-policy-0087f3e.tar.gz) = fed487abb21eb46d80ddae7686fabdaf107163d0b372d757ea7f60e4d5bb32e635ea46bf81ba602fff46281f230e4a273d3d5abaf7107bf4d5c72a845ca7cec9
SHA512 (selinux-policy-contrib-93c9a53.tar.gz) = b2e3b29d30e418a766a9a4eeb1833c9bb6ab3e9ad599bfa88694978ca3e32e3ec97e9317095e08b97d92a0705536e423ac6e6f7d726d7150d341bcd9122afc58
SHA512 (container-selinux.tgz) = 2e026f683942fd5dc73a107fd3a143b843e0af70abe939a2859dfcc28bad2e283094b2a13dafa0f7ae1a0fd65d3fda3cff33fbaade6097c9b6781e25da8ee582