selinux-policy/policy/modules/kernel
Dan Walsh b45aaab97c Allow sudo to send signals to any domains the user could have transitioned to.
Passwd in single user mode needs to talk to console_device_t
Mozilla_plugin_t needs to connect to web ports, needs to write to video device, and read alsa_home_t alsa setsup pulseaudio
locate tried to read a symbolic link, will dontaudit
New labels for telepathy-sunshine content in homedir
Google is storing other binaries under /opt/google/talkplugin
bluetooth/kernel is creating unlabeled_t socket that I will allow it to use until kernel fixes bug
Add boolean for unconfined_t transition to mozilla_plugin_t and telepathy domains, turned off in F14 on in F15
modemmanger and bluetooth send dbus messages to devicekit_power
Samba needs to getquota on filesystems labeld samba_share_t
2010-10-01 11:58:15 -04:00
..
corecommands.fc Allow sudo to send signals to any domains the user could have transitioned to. 2010-10-01 11:58:15 -04:00
corecommands.if dontaudit attempts by xdm_t to write to bin_t for kdm 2010-09-29 15:03:51 -04:00
corecommands.te Module version bumps and changelog for devtmpfs patchset. 2010-08-25 11:19:27 -04:00
corenetwork.fc UPdate for f14 policy 2010-08-26 09:41:21 -04:00
corenetwork.if.in Docs standardizing on the role portion of run interfaces. Additional docs cleanup. 2010-08-03 09:20:22 -04:00
corenetwork.if.m4 trunk: Add support for network interfaces with access controlled by a Boolean from the CLIP project. 2009-01-15 20:31:06 +00:00
corenetwork.te.in add policy for ajaxterm 2010-09-09 07:10:24 -04:00
corenetwork.te.m4 Increase bindreservport range to 512-1024 in corenetwork, from Dan Walsh. 2010-07-19 14:22:44 -04:00
devices.fc Allow iptables to read shorewall tmp files 2010-09-07 16:23:09 -04:00
devices.if Allow iptables to read shorewall tmp files 2010-09-07 16:23:09 -04:00
devices.te merge latest upstream 2010-08-30 13:41:40 -04:00
domain.fc remove extra level of directory 2006-07-12 20:32:27 +00:00
domain.if Allow hugetlbfs_t to be on device_t file system 2010-09-10 10:10:34 -04:00
domain.te Allow firewallgui to sys_rawio which seems to be required to setup masqerading 2010-09-25 06:23:04 -04:00
files.fc UPdate for f14 policy 2010-08-26 09:41:21 -04:00
files.if Allow sudo to send signals to any domains the user could have transitioned to. 2010-10-01 11:58:15 -04:00
files.te UPdate for f14 policy 2010-08-26 09:41:21 -04:00
filesystem.fc Allow iptables to read shorewall tmp files 2010-09-07 16:23:09 -04:00
filesystem.if Add vnstat policy 2010-09-16 17:46:06 -04:00
filesystem.te Allow hugetlbfs_t to be on device_t file system 2010-09-10 10:10:34 -04:00
kernel.fc remove extra level of directory 2006-07-12 20:32:27 +00:00
kernel.if Allow sudo to send signals to any domains the user could have transitioned to. 2010-10-01 11:58:15 -04:00
kernel.te merge latest upstream 2010-08-30 13:41:40 -04:00
mcs.fc remove extra level of directory 2006-07-12 20:32:27 +00:00
mcs.if Allow domains with different mcs levels to send each other signals as long as they are not identified as mcsconstrainproc 2010-09-22 16:42:32 -04:00
mcs.te Allow domains with different mcs levels to send each other signals as long as they are not identified as mcsconstrainproc 2010-09-22 16:42:32 -04:00
metadata.xml remove extra level of directory 2006-07-12 20:32:27 +00:00
mls.fc remove extra level of directory 2006-07-12 20:32:27 +00:00
mls.if trunk: whitespace fixes 2009-06-26 14:40:13 +00:00
mls.te Whitespace change: drop unnecessary blank line at the start of .te files. 2010-06-10 08:16:35 -04:00
selinux.fc remove extra level of directory 2006-07-12 20:32:27 +00:00
selinux.if UPdate for f14 policy 2010-08-26 09:41:21 -04:00
selinux.te Whitespace change: drop unnecessary blank line at the start of .te files. 2010-06-10 08:16:35 -04:00
storage.fc UPdate for f14 policy 2010-08-26 09:41:21 -04:00
storage.if UPdate for f14 policy 2010-08-26 09:41:21 -04:00
storage.te Virtio disk file context update from Mika Pfluger. 2010-08-02 08:33:41 -04:00
terminal.fc Add terminal patch from Dan Walsh. 2009-11-19 14:57:49 -05:00
terminal.if Use relabel permission sets where possible. 2010-09-15 17:42:29 +02:00
terminal.te firstboot is leaking a netlink_route socket into iptables. We need to dontaudit 2010-09-01 09:47:50 -04:00
ubac.fc trunk: add missing ubac module. 2008-11-05 16:11:27 +00:00
ubac.if Improve the documentation of ubac_constrained(). 2010-03-02 11:28:44 -05:00
ubac.te Whitespace change: drop unnecessary blank line at the start of .te files. 2010-06-10 08:16:35 -04:00