* Tue Sep 2 2015 Lukas Vrabec <lvrabec@redhat.com> 3.13.1-128.14
- Allow rpcbind_t domain to change file owner and group
- Allow smbcontrol to create a socket in /var/samba which uses for a communication with smbd, nmbd and winbind.
- Remove duplicate rules in dirsrv-admin policy
- Allow dirsrv-admin read httpd pid files.
- Allow dirsrv-admin read httpd pid files.
- Add label for dirsrv-admin unit file.
- Allow qpid daemon to connect on amqp tcp port.
- Allow dirsrvadmin-script read /etc/passwd file Allow dirsrvadmin-script exec systemctl
- Add labels for afs binaries: dafileserver, davolserver, salvageserver, dasalvager
- Add lsmd_plugin_t sys_admin capability, Allow lsmd_plugin_t getattr from sysfs filesystem.
- Allow rhsmcertd_t send signull to unconfined_service_t domains.
- Label /etc/ipa/nssdb dir as cert_t
- Add interface unconfined_server_signull() to allow domains send signull to unconfined_service_t