05fb517 * Fri Nov 13 2020 Zdenek Pytela <zpytela@redhat.com> - 3.14.7-8

Authored and Committed by zpytela 3 years ago
    * Fri Nov 13 2020 Zdenek Pytela <zpytela@redhat.com> - 3.14.7-8
    - Set correct default file context for /usr/libexec/pcp/lib/*
    - Introduce rpmdb_t type
    - Allow slapd manage files/dirs in ldap certificates directory
    - Revert "Allow certmonger add new entries in a generic certificates directory"
    - Allow certmonger add new entries in a generic certificates directory
    - Allow slapd add new entries in ldap certificates directory
    - Remove retired PCP pmwebd and pmmgr daemons (since 5.0)
    - Let keepalived bind a raw socket
    - Add default file context for /usr/libexec/pcp/lib/*
    - squid: Allow net_raw capability when squid_use_tproxy is enabled
    - systemd: allow networkd to check namespaces
    - Add ability to read init_var_run_t where fs_read_efivarfs_files is allowed
    - Allow resolved to created varlink sockets and the domain to talk to it
    - selinux: tweak selinux_get_enforce_mode() to allow status page to be used
    - systemd: allow all systemd services to check selinux status
    - Set default file context for /var/lib/ipsec/nss
    - Allow user domains transition to rpmdb_t
    - Revert "Add miscfiles_add_entry_generic_cert_dirs() interface"
    - Revert "Add miscfiles_create_generic_cert_dirs() interface"
    - Update miscfiles_manage_all_certs() to include managing directories
    - Add miscfiles_create_generic_cert_dirs() interface
    - Add miscfiles_add_entry_generic_cert_dirs() interface
    - Revert "Label /var/run/zincati/public/motd.d/* as motd_var_run_t"
    
        
  • Build completed
    success
    Built as selinux-policy-3.14.7-8.fc34
    3 years ago
  • Build completed
    success
    Built as selinux-policy-3.14.7-8.eln105
    3 years ago
file modified
+28 -3
file modified
+3 -3