Daniel J Walsh
|
3b54668c40
|
Update spec file to suck in the correct version of selinux-policy packages
|
2010-01-15 21:39:39 +00:00 |
|
Daniel J Walsh
|
89ad5ea38f
|
- Turn on puppet policy
- Update to dgrift git policy
|
2010-01-14 21:49:18 +00:00 |
|
Daniel J Walsh
|
fc05ac0660
|
- Move users file to selection by spec file.
- Allow vncserver to run as unconfined_u:unconfined_r:unconfined_t
|
2010-01-11 22:06:55 +00:00 |
|
Daniel J Walsh
|
352dafd046
|
- Update to upstream
|
2010-01-07 21:59:22 +00:00 |
|
Daniel J Walsh
|
6049e24424
|
- Remove most of the permissive domains from F12.
|
2010-01-06 21:57:07 +00:00 |
|
Daniel J Walsh
|
485ded565a
|
- Add cobbler policy from dgrift
|
2010-01-05 22:09:02 +00:00 |
|
Daniel J Walsh
|
1e86f3f158
|
- add usbmon device
- Add allow rulse for devicekit_disk
|
2010-01-04 21:31:54 +00:00 |
|
Daniel J Walsh
|
4478a9a993
|
- Lots of fixes found in F12, fixes from Tom London
|
2009-12-30 14:44:54 +00:00 |
|
Daniel J Walsh
|
08b890455e
|
- Cleanups from dgrift
|
2009-12-23 18:39:12 +00:00 |
|
Daniel J Walsh
|
daebd59668
|
- Cleanups from dgrift
|
2009-12-23 18:37:23 +00:00 |
|
Daniel J Walsh
|
e2f53dfaec
|
- Cleanups from dgrift
|
2009-12-23 13:02:27 +00:00 |
|
Daniel J Walsh
|
550cc5f4f4
|
- Add back xserver_manage_home_fonts
|
2009-12-22 17:25:13 +00:00 |
|
Daniel J Walsh
|
7d40583319
|
- Dontaudit sandbox trying to read nscd and sssd
|
2009-12-21 22:53:07 +00:00 |
|
Daniel J Walsh
|
b4675412e2
|
- Update to upstream
|
2009-12-18 21:18:10 +00:00 |
|
Daniel J Walsh
|
6ca563ec01
|
- Rename udisks-daemon back to devicekit_disk_t policy
|
2009-12-17 19:36:22 +00:00 |
|
Daniel J Walsh
|
e54cc7c3e4
|
- Fixes for abrt calls
|
2009-12-16 23:01:00 +00:00 |
|
Daniel J Walsh
|
9c90ba7e8e
|
- Add tgtd policy
|
2009-12-16 13:30:38 +00:00 |
|
Daniel J Walsh
|
755e2d6934
|
- Add tgtd policy
|
2009-12-11 20:18:55 +00:00 |
|
Daniel J Walsh
|
9eef358da0
|
- Update to upstream release
|
2009-12-10 19:20:14 +00:00 |
|
Daniel J Walsh
|
f2a1dcd3d4
|
- Add asterisk policy back in
- Update to upstream release 2.20091117
|
2009-11-25 20:19:12 +00:00 |
|
Daniel J Walsh
|
ee88b050c5
|
- Add asterisk policy back in
|
2009-11-20 16:55:54 +00:00 |
|
Daniel J Walsh
|
ce8c76d673
|
- Add asterisk policy back in
|
2009-11-20 16:31:54 +00:00 |
|
Daniel J Walsh
|
55acbfd715
|
- Update to upstream release 2.20091117
|
2009-11-18 22:22:56 +00:00 |
|
Daniel J Walsh
|
5e44eb8657
|
- Update to upstream
|
2009-11-14 05:18:01 +00:00 |
|
Daniel J Walsh
|
32594a1112
|
- Allow vpnc request the kernel to load modules
|
2009-10-02 15:15:36 +00:00 |
|
Daniel J Walsh
|
aaf52ff041
|
- Add plymouth policy
|
2009-09-30 18:50:23 +00:00 |
|
Daniel J Walsh
|
d976a83a17
|
- Allow cupsd_config to read user tmp
- Allow snmpd_t to signal itself
- Allow sysstat_t to makedir in sysstat_log_t
|
2009-09-30 17:37:44 +00:00 |
|
Daniel J Walsh
|
8b10e3abd7
|
- Update rhcs policy
|
2009-09-29 12:38:58 +00:00 |
|
Daniel J Walsh
|
85582d623f
|
- Allow users to exec restorecond
|
2009-09-25 18:47:07 +00:00 |
|
Daniel J Walsh
|
f5a104d238
|
- Allow sendmail to request kernel modules load
|
2009-09-24 23:30:16 +00:00 |
|
Daniel J Walsh
|
4c2f298bf2
|
- Fix all kernel_request_load_module domains
|
2009-09-22 12:49:53 +00:00 |
|
Daniel J Walsh
|
405a74c394
|
- Fix all kernel_request_load_module domains
|
2009-09-21 13:55:41 +00:00 |
|
Daniel J Walsh
|
41f8e385a1
|
- Remove allow_exec* booleans for confined users. Only available for
unconfined_t
|
2009-09-20 14:32:30 +00:00 |
|
Daniel J Walsh
|
8323d545c4
|
- More fixes for sandbox_web_t
|
2009-09-19 02:03:03 +00:00 |
|
Daniel J Walsh
|
ab462917cf
|
- Allow sshd to create .ssh directory and content
|
2009-09-18 22:12:25 +00:00 |
|
Daniel J Walsh
|
d53d158d2b
|
- Fix request_module line to module_request
|
2009-09-18 20:44:00 +00:00 |
|
Daniel J Walsh
|
1fb0a98434
|
- Fix sandbox policy to allow it to run under firefox.
- Dont audit leaks.
|
2009-09-18 16:20:05 +00:00 |
|
Daniel J Walsh
|
9de7033708
|
- Fixes for sandbox
|
2009-09-17 21:41:30 +00:00 |
|
Daniel J Walsh
|
69290fd9df
|
- Update to upstream
- Dontaudit nsplugin search /root
- Dontaudit nsplugin sys_nice
|
2009-09-16 17:50:32 +00:00 |
|
Daniel J Walsh
|
23e7082b4b
|
- Fix label on /usr/bin/notepad, /usr/sbin/vboxadd-service
- Remove policycoreutils-python requirement except for minimum
|
2009-09-15 21:45:12 +00:00 |
|
Daniel J Walsh
|
6b7b0c1cdc
|
- Fix devicekit_disk_t to getattr on all domains sockets and fifo_files
- Conflicts seedit (You can not use selinux-policy-targeted and seedit at
the same time.)
|
2009-09-15 18:26:13 +00:00 |
|
Daniel J Walsh
|
e20e351e10
|
- Add wordpress/wp-content/uploads label
- Fixes for sandbox when run from staff_t
|
2009-09-11 21:15:35 +00:00 |
|
Daniel J Walsh
|
ddc8588081
|
- Update to upstream
- Fixes for devicekit_disk
|
2009-09-10 15:38:44 +00:00 |
|
Daniel J Walsh
|
ab8f807545
|
- More fixes
|
2009-09-09 21:08:02 +00:00 |
|
Daniel J Walsh
|
b8498d1e5b
|
- More fixes
|
2009-09-08 23:55:31 +00:00 |
|
Daniel J Walsh
|
123ae9957d
|
- Lots of fixes for initrc and other unconfined domains
|
2009-09-08 14:30:36 +00:00 |
|
Daniel J Walsh
|
72bc25da0e
|
- Allow xserver to use netlink_kobject_uevent_socket
|
2009-09-07 01:29:07 +00:00 |
|
Daniel J Walsh
|
1a2981be4a
|
- Dontaudit setroubleshootfix looking at /root directory
|
2009-09-02 13:33:15 +00:00 |
|
Daniel J Walsh
|
65c3f9a0a8
|
- Update to upsteam
|
2009-08-31 21:27:50 +00:00 |
|
Daniel J Walsh
|
cb5670ca1b
|
- Allow gssd to send signals to users
- Fix duplicate label for apache content
|
2009-08-31 13:39:37 +00:00 |
|