Dan Walsh
3dcddab74d
Allow firewallgui to read /etc/selinux/config
2011-10-24 13:39:32 -04:00
Dan Walsh
fbfb5e985d
Turn on mock_t and thumb_t for unconfined domains
2011-10-21 16:53:02 -04:00
Dan Walsh
f875d285bd
Turn on mock_t and thumb_t for unconfined domains
2011-10-21 16:37:11 -04:00
Dan Walsh
37b75a051e
Policy update should not modify local contexts
2011-10-21 10:05:15 -04:00
Dan Walsh
6554bb3cca
Remove allow_ptrace and replace it with deny_ptrace, which will remove all
...
ptrace from the system
Remove 2000 dontaudit rules between confined domains on transition
and replace with single
dontaudit domain domain:process { noatsecure siginh rlimitinh } ;
2011-10-11 16:46:26 -04:00
Dan Walsh
2a89dffbb5
Shrink size of policy through use of attributes for userdomain and apache
2011-10-06 10:53:27 -04:00