Commit Graph

79 Commits

Author SHA1 Message Date
Vit Mojzis
263716cfef Set recently created domains as permissive for testing period. Enable new ipmievd domain. #1241453 2015-10-15 13:40:32 +02:00
Lukas Vrabec
23d80687e0 Make pkcs11proxyd policy active 2015-09-29 18:16:18 +02:00
Vit Mojzis
53aa42deae Activate new blkmapd policy. 2015-08-20 12:37:22 +02:00
Vit Mojzis
c4a368df4f Activate new hsqldb policy. 2015-08-17 15:05:14 +02:00
Lukas Vrabec
cfb63d8e0e Make targetd policy active. 2015-08-04 14:16:26 +02:00
Lukas Vrabec
a82345f380 Make sslh policy active 2015-08-03 10:16:38 +02:00
Lukas Vrabec
6ca75adfd3 Make pdns policy active. 2015-07-28 16:56:19 +02:00
Lukas Vrabec
f9d97717a8 * Wed Mar 18 2015 Lukas Vrabec <lvrabec@redhat.com> 3.13.1-119
- build without docker
2015-03-18 17:03:21 +01:00
Miroslav Grepl
b97a0c7a41 Turn on rolekit in F22 2015-03-06 17:11:00 +01:00
Dan Walsh
800a85e70f Add new policy for hostapd 2015-01-03 09:32:33 -05:00
Lukas Vrabec
bfb6adef8b Added support for linuxptp policy. 2014-11-07 19:12:59 +01:00
Lukas Vrabec
d681f58aea Add cinder to modules-targeted-contrib 2014-10-21 14:53:28 +02:00
Lukas Vrabec
50b67a748c Add mon_statd to modules-targeted-contrib.conf 2014-10-13 15:41:34 +02:00
Dan Walsh
3e4dce057d Merge branch 'master' of ssh://pkgs.fedoraproject.org/selinux-policy 2014-10-12 07:15:47 -04:00
Dan Walsh
d3cbfbfff6 We should not build vbetool anylonger 2014-10-12 07:15:24 -04:00
Lukas Vrabec
1e232a7f1c Activate cpuplug policy 2014-10-06 15:21:58 +02:00
Lukas Vrabec
98ab4a3d80 Activated module brltty policy 2014-10-06 13:05:03 +02:00
Lukas Vrabec
3ad626f241 Add support for naemon, Add naemon to permissive domains 2014-07-22 13:45:54 +02:00
Miroslav Grepl
13bbbdb636 Clean up modules-targeted-{contrib,base}.conf from dups. 2014-06-19 14:58:29 +02:00
Lukas Vrabec
1dda0950c8 Add kmscon policy to modules-targeted-contrib.conf and to
permissivedomains
2014-06-12 18:00:33 +02:00
Lukas Vrabec
e929b7e20b Added iotop to permissive domains, and modules-targeted-contrib 2014-05-12 15:42:54 +02:00
Miroslav Grepl
bf38d6fee2 - mongod should not be a part of cloudforms.pp
- Fix labeling in snapper.fc
- Allow docker to read unconfined_t process state
- geoclue dbus chats with NetworkManager
- Add cockpit policy
- Add interface to allow tools to check the processes state of bind/named
- Allow myslqd to use the tram port for Galera/MariaDB
2014-04-23 11:47:29 +02:00
Dan Walsh
e3248078a3 Add cockpit policy 2014-04-22 08:41:06 -04:00
Dan Walsh
1c6a5631e8 Merge branch 'master' of ssh://pkgs.fedoraproject.org/selinux-policy 2014-04-11 15:08:16 -04:00
Miroslav Grepl
f8f75f94a2 - Turn on gear_port_t
- Add gear policy and remove permissive domains.
- Add labels for ostree
- Add SELinux awareness for NM
- Label /usr/sbin/pwhistory_helper as updpwd_exec_t
2014-03-27 20:39:58 +01:00
Dan Walsh
bdc8508a69 Add policy for geard in docker world 2014-03-27 14:42:34 -04:00
Dan Walsh
96f7ac46ed Remove vbetool we no longer ship this 2014-02-27 16:00:58 -05:00
Lukas Vrabec
f2fd78e00e Add keepalived to modules-targeted-contrib 2014-02-17 13:42:02 +01:00
Lukas Vrabec
99989c2bfc Added osad to modules-targeted-contrib.conf 2014-02-03 10:22:22 +01:00
Miroslav Grepl
451a1078c0 Turn on rhnsd policy 2014-01-31 15:18:53 +01:00
Miroslav Grepl
98755aae81 Turn on bacula policy 2014-01-31 10:21:40 +01:00
Miroslav Grepl
4918dedb61 Add rkhunter policy 2014-01-27 11:24:48 +01:00
Miroslav Grepl
99d95cac6e Add geoclue policy 2014-01-21 12:22:50 +01:00
Miroslav Grepl
368fb803a8 See spec file 2014-01-17 16:40:25 +01:00
Lukas Vrabec
162a2c3802 Added speech-dispatcher to modules-targeted-contrib.conf 2013-12-20 15:28:27 +01:00
Miroslav Grepl
e0c1a1b49f Turn on mirrormanager policy 2013-12-19 21:10:46 +01:00
Miroslav Grepl
2397102af8 - Allow freeipmi_ipmidetectd_t to use freeipmi port
- Update freeipmi_domain_template()
- Allow journalctl running as ABRT to read /run/log/journal
- Allow NM to read dispatcher.d directory
- Update freeipmi policy
- Type transitions with a filename not allowed inside conditionals
- Allow tor to bind to hplip port
- Make new type to texlive files in homedir
- Allow zabbix_agent to transition to dmidecode
- Add rules for docker
- Allow sosreport to send signull to unconfined_t
- Add virt_noatsecure and virt_rlimitinh interfaces
- Fix labeling in thumb.fc to add support for /usr/lib64/tumbler-1/tumblerddd support for freeipm
- Add sysadm_u_default_contexts
- Add logging_read_syslog_pid()
- Fix userdom_manage_home_texlive() interface
- Make new type to texlive files in homedir
- Add filename transitions for /run and /lock links
- Allow virtd to inherit rlimit information
2013-12-12 17:23:54 +01:00
Lukas Vrabec
0dc67d04d6 Added vmtools to modules-targeted-contrib.conf 2013-12-10 11:26:08 +01:00
Lukas Vrabec
5689bdb03b Merge branch 'master' of ssh://pkgs.fedoraproject.org/selinux-policy 2013-12-06 11:18:21 +01:00
Lukas Vrabec
d487bf5144 Added conman to modules-targeted-contrib.conf 2013-12-06 11:17:48 +01:00
Miroslav Grepl
6de8b20964 Add freeipmi policy 2013-12-06 10:00:23 +01:00
Lukas Vrabec
65289ba44b Added ninfod and openwsman to modules-targeted-contrib.conf 2013-12-05 15:43:22 +01:00
Lukas Vrabec
a2db29cc4f Merge branch 'master' of ssh://pkgs.fedoraproject.org/selinux-policy 2013-11-21 17:36:29 +01:00
Lukas Vrabec
3e4e5fbcd1 Added rasdaemon module to modules-targeted-contrib.conf 2013-11-21 17:35:26 +01:00
Dan Walsh
ae07faa147 Turn off F20 permissive domains, add docker 2013-11-21 09:20:24 -05:00
Lukas Vrabec
ba211c8644 Added new policies to modules-targeted-contrib.conf 2013-11-21 11:13:23 +01:00
Miroslav Grepl
269ef098f1 * Wed Nov 13 2013 Miroslav Grepl <mgrepl@redhat.com> 3.13.1-1
- Update to upstream
2013-11-13 16:05:06 +01:00
Miroslav Grepl
0f9b0de389 Upload new upstream sources 2013-11-13 15:27:57 +01:00
Miroslav Grepl
47a93c4a0b Add journalctl to modules-targeted-contrib 2013-11-05 23:04:20 +01:00
Miroslav Grepl
207905d08a "motion+rtas should be in modules-targeted-contrib.conf" 2013-10-17 14:56:48 +02:00