selinux-policy/policy/modules/system
Dan Walsh 6ed3f15e82 Allow domains with different mcs levels to send each other signals as long as they are not identified as mcsconstrainproc
Allow shutdown to write utmp and search /var/log
Allow mozilla_plugin to send nsplugin signals
Split out samba_run_unconfined_net from unconfined_domain stuff.  TO allow unconfined.pp module to be removed
Allow nrpe to send signal and sigkill to the plugins
Fix up xguest to allow it to read hwdata and gconf_etc_t
Allow initrc_t to manage faillog
2010-09-22 16:42:32 -04:00
..
application.fc trunk: add application module 2007-07-19 18:57:48 +00:00
application.if UPdate for f14 policy 2010-08-26 09:41:21 -04:00
application.te UPdate for f14 policy 2010-08-26 09:41:21 -04:00
authlogin.fc Latest fixes 2010-08-26 20:30:04 -04:00
authlogin.if Allow domains with different mcs levels to send each other signals as long as they are not identified as mcsconstrainproc 2010-09-22 16:42:32 -04:00
authlogin.te Merge branch 'master' of ssh://git.fedorahosted.org/git/selinux-policy; branch 'master' of http://oss.tresys.com/git/refpolicy 2010-09-10 13:02:25 -04:00
clock.fc remove extra level of directory 2006-07-12 20:32:27 +00:00
clock.if System layer xml fixes. 2010-08-05 09:25:55 -04:00
clock.te Whitespace change: drop unnecessary blank line at the start of .te files. 2010-06-10 08:16:35 -04:00
daemontools.fc remove extra level of directory 2006-07-12 20:32:27 +00:00
daemontools.if UPdate for f14 policy 2010-08-26 09:41:21 -04:00
daemontools.te UPdate for f14 policy 2010-08-26 09:41:21 -04:00
fstools.fc UPdate for f14 policy 2010-08-26 09:41:21 -04:00
fstools.if System layer xml fixes. 2010-08-05 09:25:55 -04:00
fstools.te Allow iptables to read shorewall tmp files 2010-09-07 16:23:09 -04:00
getty.fc trunk: 6 patches from the fedora policy, cherry picked by david hardeman. 2008-08-14 14:19:50 +00:00
getty.if System layer xml fixes. 2010-08-05 09:25:55 -04:00
getty.te UPdate for f14 policy 2010-08-26 09:41:21 -04:00
hostname.fc remove extra level of directory 2006-07-12 20:32:27 +00:00
hostname.if System layer xml fixes. 2010-08-05 09:25:55 -04:00
hostname.te merge latest upstream 2010-08-30 13:41:40 -04:00
hotplug.fc patch to fix escaping of . in file contexts from james athey 2006-07-24 15:43:57 +00:00
hotplug.if System layer xml fixes. 2010-08-05 09:25:55 -04:00
hotplug.te UPdate for f14 policy 2010-08-26 09:41:21 -04:00
init.fc UPdate for f14 policy 2010-08-26 09:41:21 -04:00
init.if Fix some names in passenger policy 2010-09-13 10:26:10 -04:00
init.te Allow domains with different mcs levels to send each other signals as long as they are not identified as mcsconstrainproc 2010-09-22 16:42:32 -04:00
ipsec.fc UPdate for f14 policy 2010-08-26 09:41:21 -04:00
ipsec.if UPdate for f14 policy 2010-08-26 09:41:21 -04:00
ipsec.te UPdate for f14 policy 2010-08-26 09:41:21 -04:00
iptables.fc UPdate for f14 policy 2010-08-26 09:41:21 -04:00
iptables.if UPdate for f14 policy 2010-08-26 09:41:21 -04:00
iptables.te Allow iptables to read shorewall tmp files 2010-09-07 16:23:09 -04:00
iscsi.fc Iscsi and tgtd patches from Dan Walsh. 2010-03-09 15:17:16 -05:00
iscsi.if UPdate for f14 policy 2010-08-26 09:41:21 -04:00
iscsi.te Allow iscsid to manage tgtd semaphores 2010-09-15 16:50:07 +02:00
kdump.fc add kdump from dan. 2009-09-02 08:33:25 -04:00
kdump.if System layer xml fixes. 2010-08-05 09:25:55 -04:00
kdump.te UPdate for f14 policy 2010-08-26 09:41:21 -04:00
libraries.fc UPdate for f14 policy 2010-08-26 09:41:21 -04:00
libraries.if Allow iptables to read shorewall tmp files 2010-09-07 16:23:09 -04:00
libraries.te Mozilla_plugin needs to getattr on tmpfs and no longer needs to write to tmpfs_t 2010-09-08 12:06:20 -04:00
locallogin.fc UPdate for f14 policy 2010-08-26 09:41:21 -04:00
locallogin.if System layer xml fixes. 2010-08-05 09:25:55 -04:00
locallogin.te UPdate for f14 policy 2010-08-26 09:41:21 -04:00
logging.fc UPdate for f14 policy 2010-08-26 09:41:21 -04:00
logging.if Use relabel permission sets where possible. 2010-09-15 17:42:29 +02:00
logging.te UPdate for f14 policy 2010-08-26 09:41:21 -04:00
lvm.fc UPdate for f14 policy 2010-08-26 09:41:21 -04:00
lvm.if Allow certmaster to read usr_t files. All python apps are going to need this. 2010-09-02 13:38:00 -04:00
lvm.te Allow iptables to read shorewall tmp files 2010-09-07 16:23:09 -04:00
metadata.xml remove extra level of directory 2006-07-12 20:32:27 +00:00
miscfiles.fc More fixes for mozilla_plugin_t 2010-09-10 12:10:13 -04:00
miscfiles.if Merge branch 'master' of ssh://git.fedorahosted.org/git/selinux-policy; branch 'master' of http://oss.tresys.com/git/refpolicy 2010-09-10 13:02:25 -04:00
miscfiles.te Merge branch 'master' of ssh://git.fedorahosted.org/git/selinux-policy; branch 'master' of http://oss.tresys.com/git/refpolicy 2010-09-10 13:02:25 -04:00
modutils.fc Iptables and modutils patches from Dan Walsh. 2009-12-01 09:23:11 -05:00
modutils.if UPdate for f14 policy 2010-08-26 09:41:21 -04:00
modutils.te Allow iptables to read shorewall tmp files 2010-09-07 16:23:09 -04:00
mount.fc UPdate for f14 policy 2010-08-26 09:41:21 -04:00
mount.if UPdate for f14 policy 2010-08-26 09:41:21 -04:00
mount.te Allow a couple of sandbox issues. 2010-09-14 10:02:43 -04:00
netlabel.fc merge netlabel stuff from labeled-networking branch 2006-10-17 16:58:17 +00:00
netlabel.if System layer xml fixes. 2010-08-05 09:25:55 -04:00
netlabel.te Whitespace change: drop unnecessary blank line at the start of .te files. 2010-06-10 08:16:35 -04:00
pcmcia.fc remove extra level of directory 2006-07-12 20:32:27 +00:00
pcmcia.if System layer xml fixes. 2010-08-05 09:25:55 -04:00
pcmcia.te Whitespace change: drop unnecessary blank line at the start of .te files. 2010-06-10 08:16:35 -04:00
raid.fc rename mdadm_map_t to mdadm_var_run_t 2010-09-10 12:14:25 -04:00
raid.if System layer xml fixes. 2010-08-05 09:25:55 -04:00
raid.te rename mdadm_map_t to mdadm_var_run_t 2010-09-10 12:14:25 -04:00
selinuxutil.fc UPdate for f14 policy 2010-08-26 09:41:21 -04:00
selinuxutil.if Dontaudit socket leaks when running semanage code 2010-08-30 11:37:02 -04:00
selinuxutil.te Allow iptables to read shorewall tmp files 2010-09-07 16:23:09 -04:00
setrans.fc trunk: init script for setrans. 2008-09-18 18:20:31 +00:00
setrans.if System layer xml fixes. 2010-08-05 09:25:55 -04:00
setrans.te UPdate for f14 policy 2010-08-26 09:41:21 -04:00
sosreport.fc UPdate for f14 policy 2010-08-26 09:41:21 -04:00
sosreport.if UPdate for f14 policy 2010-08-26 09:41:21 -04:00
sosreport.te Allow iptables to read shorewall tmp files 2010-09-07 16:23:09 -04:00
sysnetwork.fc UPdate for f14 policy 2010-08-26 09:41:21 -04:00
sysnetwork.if UPdate for f14 policy 2010-08-26 09:41:21 -04:00
sysnetwork.te UPdate for f14 policy 2010-08-26 09:41:21 -04:00
udev.fc UPdate for f14 policy 2010-08-26 09:41:21 -04:00
udev.if Use ps_process_pattern to read state. 2010-09-15 17:42:29 +02:00
udev.te Allow crond to manage user_spool_cron_t link files 2010-09-08 17:54:31 -04:00
unconfined.fc UPdate for f14 policy 2010-08-26 09:41:21 -04:00
unconfined.if cleanup mmap_low merge with upstream 2010-09-01 14:55:04 -04:00
unconfined.te UPdate for f14 policy 2010-08-26 09:41:21 -04:00
userdomain.fc Add the ability to send audit messages to confined admin policies 2010-09-15 11:31:20 -04:00
userdomain.if Merge branch 'master' of ssh://git.fedorahosted.org/git/selinux-policy 2010-09-15 16:06:43 -04:00
userdomain.te UPdate for f14 policy 2010-08-26 09:41:21 -04:00
xen.fc UPdate for f14 policy 2010-08-26 09:41:21 -04:00
xen.if Type xenstored_var_run_t is required here. 2010-09-15 17:42:27 +02:00
xen.te Fix cert calls in telepath, boinc, kerberos 2010-09-10 13:18:49 -04:00